Protecting group data sets

A group data set is a data set whose high-level qualifier is a RACF® group name. A RACF-defined user can RACF-protect a group data set under any of the following conditions:
  • The user has JOIN, CONNECT, or CREATE authority in the group.
  • The user has the SPECIAL attribute (or the group-SPECIAL attribute for that group) and the request is made using the ADDSD command.
  • The user has the OPERATIONS attribute and is not connected to the group.
  • The REQUEST=DEFINE preprocessing exit routine is used to override normal RACF authorization requirements.