5.2.3.3 Setting UBBCONFIG File Security Parameters
The RESOURCES
section in this file contains a SECURITY
parameter that works in conjunction with the SECURITY
parameter in the
DMCONFIG
file to establish how Oracle Tuxedo Mainframe Adapter for SNA
controls access to the ATMI local domain. This parameter takes the form:
SECURITY = {value}
In this parameter, value
can be set as:
-
NONE
- No security is enforced (default).
-
APP_PW
- Requires password authorization for the Gateway and administrative tools to connect to the local application.
-
USER_AUTH
- Same as
APP_PW
, but additional authorization is required on a per-user basis. -
ACL
- Same as
USER_AUTH
, but additional access-control checks are done on service names, queue names, and event names. If no Access Control Lists (ACL) exists for a given name, access is granted. -
MANDATORY_ACL
- Same as
ACL
, but if no ACL exists for a given name, access is denied.
In most cases, the UBBCONFIG
file has already been configured and you do not
need to establish the SECURITY
parameter settings, but examining this file
enables you to see how Oracle Tuxedo Mainframe Adapter for SNA enforces security.
If this parameter is set to NONE
, no security is enforced. If set to
APP_PW
, the local ATMI domain’s Authorization Server prompts for the
application password. If set to USER_AUTH
, ACL
, or
MANDATORY_ACL
, the qualified security is enforced as specified.
Parent topic: Configuring User ID Mapping