I dont think special authority *SECOFR will help in this case. You need a user profile on the target machine that has specific authority to the object. View the authority to the object with DSPOBJAUT.
It will depend on how your DDM is configured, SNA or IP. Nowadays, DDM over IP will be easier. For IP:
Ensure that passwords are required. (Otherwise the system can be totally open to the world.)
Use the Add Server Authentication Entry (ADDSVRAUTE) command to set an entry on the source system that will control the profile used on the target system; review the help text to see the server name for DDM.
Next time you connect, the authentication entry will send a logon request for you. The transaction will run under the logon profile.
Be aware that only a single authentication entry can exist for DDM regardless of what the target system is.