z/OS Security Server RACF Security Administrator's Guide
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


RRSF considerations for distributed identity filters

z/OS Security Server RACF Security Administrator's Guide
SA23-2289-00

The RACMAP command updates profiles in the USER and IDIDMAP classes. (While the RACMAP command itself is not eligible for command direction and cannot be used with the AT or ONLY keyword, it might be executed on remote nodes using other methods.) Updates to profiles in these classes by the RACMAP command are eligible for automatic direction of application updates.

To ensure that RACF® database updates are propagated in a consistent manner across the IDIDMAP and USER classes, you should define an RRSFDATA resource called AUTODIRECT.target-node.IDIDMAP.APPL. Note that the AUTODIRECT.target-node.USER.APPL resource is not checked to determine authority to propagate USER class updates that are made as a result of processing distributed identity filters.

For information about distributed identity filters, see Distributed identity filters.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014