z/OS Security Server RACF Security Administrator's Guide
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


Authority to create resource profiles

z/OS Security Server RACF Security Administrator's Guide
SA23-2289-00

Users can create data set profiles if any of the following is true:
  • The high-level qualifier of the profile matches their user ID.
  • A high-level qualifier matches a group in which they have CREATE authority.
  • They have the SPECIAL or group-SPECIAL attribute.
Users can create general resource profiles if either of the following is true:
  • They have the CLAUTH attribute for the class.
  • They have the SPECIAL attribute.

For complete descriptions of the authorizations required for any RACF® command, see the description of the command in z/OS Security Server RACF Command Language Reference.

If the SETROPTS GENERICOWNER option is in effect, further limitations apply. See Restricting the creation of general resource profiles (GENERICOWNER option).

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014