Enabling the plug-ins and setting up security for IBM Cloud Provisioning for z/OS

This information describes how to quickly get started with IBM Cloud Provisioning and Management for z/OS, by using supplied jobs to set up a secure default domain and tenant.

For information on configuration and security of z/OSMF in general, see IBM z/OS Management Facility Configuration Guide. If you would like to watch a video on how to configure IBM Cloud Provisioning and Management for z/OS, see How to configure IBM Cloud Provisioning and Management for z/OS.

IBM strongly recommends the use of groups, whenever possible, for ease of security administration. This chapter, the IZUPRSEC sample RACF setup job, and the automatic security management in IBM Cloud® Provisioning and Management for z/OS® all assume that you will use groups for security administration.

After you perform the initial security setup, you will not need to repeat the steps in this chapter. Instead, the Cloud Provisioning tasks will perform dynamic updates to your security environment, with one exception: The landlord group is maintained manually by your security administrator.

The instructions in this chapter assume that your installation shares its security database across the participating systems in the sysplex. If you use more than one security database, your security administrator must duplicate the Cloud Provisioning authorizations in each security database.