Permissions for administrators

If you are using any IBM® App Connect Enterprise functions that require access to IBM MQ, additional permissions are required by administrators.

About this task

When you activate administration security with the authorization mode set to mq, the IBM MQ permissions for inquire, put, and set are granted for the group mqbrkrs for the queue SYSTEM.BROKER.AUTH. These permissions grant read, write, and execute authority on the integration node and its properties to all system user IDs that are members of mqbrkrs, where the system ID is provided by a local command or Toolkit, or corresponds to the configured role for a remote or web user.

If you want additional user IDs to have administrator authorization, either add those IDs to the group mqbrkrs, or add IBM MQ permissions for inquire, put, and set for those user IDs to this queue.

The following table summarizes the IBM MQ permissions that are required in order to connect to the queue manager that is specified on the integration node:

Object Name Permissions
Queue manager The queue manager associated with the integration node; for example, ACEQMGR
Connect
Inquire

For information about the permissions that are required to enable users to act on IBM App Connect Enterprise resources, see Permissions for acting on integration nodes, integration servers, and resources.