0 pts.
 QSYSOPR Security
What is the recommended authority setting to QSYSOPR which prevents users from answering messages? What kind of impact does this have on jobs sending messages to the queue?

Software/Hardware used:
ASKED: June 17, 2005  2:13 PM
UPDATED: June 18, 2005  5:20 PM

Answer Wiki:
This looks like a job for... InfoCenter. http://publib.boulder.ibm.com/infocenter/iseries/v5r3/ic2924/index.htm?info/rbapk/rbapkresaccsysop.htm In V5R3, navigate: Security-> Related information-> Basic system security and planning-> Setting up resource security-> Restricting access to the system operator message queue The soggested object authority for *PUBLIC is: Object ----------Object----------- User Group Authority Opr Mgt Exist Alter Ref *PUBLIC USER DEF X The suggested data authority is: Object ---------Data-------- User Group Authority Read Add Upd Del Exec *PUBLIC USER DEF X A couple additional notes there say: .. Use F6 (Add Users) to add users who need to respond to QSYSOPR messages. Give them *CHANGE authority. (These are individuals other than QSYSOPR.) .. Attention: Do not make the public authority *EXCLUDE. All jobs (and users) must be able to add messages to the QSYSOPR message queue. It seems that IBM's recommendation is about as close as you might get.
Last Wiki Answer Submitted:  June 18, 2005  5:20 pm  by  TomLiotta   107,985 pts.
All Answer Wiki Contributors:  TomLiotta   107,985 pts.
To see all answers submitted to the Answer Wiki: View Answer History.


Discuss This Question:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _