Protecting group data sets
A group data set is a data set whose high-level
qualifier is a RACF® group name.
A RACF-defined user can RACF-protect a group data set under any of
the following conditions:
- The user has JOIN, CONNECT, or CREATE authority in the group.
- The user has the SPECIAL attribute (or the group-SPECIAL attribute for that group) and the request is made using the ADDSD command.
- The user has the OPERATIONS attribute and is not connected to the group.
- The REQUEST=DEFINE preprocessing exit routine is used to override normal RACF authorization requirements.