AS/400 security Questions


Why limit CLI access on AS/400?
A little background… I am new to the compliance and auditing field and recently introduced to the AS/400 system and I am constantly seeing in best practice environments that the CLI be restricted from most users and or at least limited capabilities set to *YES. To the point… The system administrator for the AS400 is [...]

Answer Question   |  February 25, 2013  12:13 AM
AS/400, AS/400 - CL Command, AS/400 security
asked by:
45 pts.

AS400 Query Authority
If I created a query am I considered the “owner”?? If I use *exclude, does this keep everyone except me from accessing/changing/deleting the query? Explaining why I ask these questions, might help. We use an AS400 software that is hosted by a software company. They have the server, not us. We are changing software companies [...]

Answer Question   |  March 17, 2012  5:53 PM
AS/400 security, Query user authority
asked by:
5 pts.

Track Database SSL connections
Hello, We have VeriSign certificates installed to allow for SSL connectivity to Telnet, the Database…etc. Problem is that I need to be able to track who’s using SSL to connect to the database on port 9471 and output it to a file. Any ideas on how to go about finding this information. I cannot just [...]

Answer Question   |  March 31, 2012  7:41 PM
AS/400 database connectivity, AS/400 security, SSL, SSL Certificates
asked by:
160 pts.

Problem to OMIT a log file
Hi, I do have a problem to OMIT this file ‘security_audit.0.log’ from my IFS daily backup. I tried security* or security_audit.0.log* or seucrity_audit.0.log    …. but still the same problem ‘Object not saved’. I have no problem to OMIT others files. Can someone help with this. Thank you

Answer Question   |  March 31, 2012  2:05 PM
AS/400, AS/400 security, BRMS, Database file security, OMIT statement
asked by:
250 pts.

Password Protection for PDF in AS/400
Hi, Currently we are generating PDF using Spool Mail. Now, User wants to have a password for the PDF. Will it be possible to have? If So, How we can do this? Suggest me. Pradeep.

Answer Question   |  March 31, 2012  4:44 AM
AS/400, AS/400 PDF, AS/400 security, Password Protection, PDF
asked by:
3,370 pts.

AS400 FTP
Hi, I need to ftp from IFS of a AS400 to a remote server using encrypted/secure transfer. Destination server may not be necessarily an AS400. I am able to transfer the reports simply, but it has to be encrypted/secure.

Answer Question   |  June 24, 2011  11:31 AM
AS/400 FTP, AS/400 security, Encryption, FTP Server, Remote servers
asked by:
115 pts.

AS400 JOBCTL
What are the security issues regarding giving JOBCTL to a User?

Answer Question   |  March 16, 2011  4:48 PM
AS/400, AS/400 security, AS/400 Security Levels, JOBCTL
asked by:
5 pts.

AS/400 query security
I have a library we will call liba. In liba i have files for different companies. For eg: files [strong]aa01.itm[/strong] is an inventory file for co# 01 and[strong] bb01.cms[/strong] is a customer file for co# 01. I also have files[strong] aa07.itm[/strong] and [strong]bb07.cms[/strong]. These files are for co# 07.I want to grant someone access to only [...]

Answer Question   |  January 24, 2011  3:41 PM
AS/400 Query, AS/400 Query Security, AS/400 security
asked by:
5 pts.

Add Issuer to Certificate Store
I can not import SSL Certificate to the CA store, because the issuer of the certificate is not listed  in the certificate store. How can I add issuer?

Answer Question   |  December 20, 2010  3:26 PM
AS/400 security, SSL, SSL Certificates
asked by:
5 pts.

iSeries FTP over SSL
My iSeries FTPs files to 10 Servers over SSL. iSeries here acts as FTP Client. We have loaded SSL certificates from 10 server and trusted. All FTPs happenning successfully. My question is, How does system identify which certificate to be used out of 10 when I FTP to any one server?

Answer Question   |  January 21, 2011  12:55 AM
AS/400, AS/400 security, FTP, Networking, Security, SSL
asked by:
290 pts.

client access from p/c to AS400 signon screen
Since we have changed our password to disable the persons user ID for invalid attempts instaed of varying the seesion off. We now have aproblem where user get thier user ID diabled when really doing nothing. They have already gain access and are doing their work and may be inactive for a few moments, it [...]

Answer Question   |  August 19, 2010  7:26 PM
AS/400 passwords, AS/400 security, iSeries passwords, V5R4M0
asked by:
15 pts.

AS400 Security Audit
How do you perform a security audit for user access on the AS400?

Answer Question   |  July 15, 2010  1:50 PM
AS/400 security, AS/400 user administration, Security Audit
asked by:
10 pts.

Changing Passwords on AS/400
When any of our users try and use a special character @# or undersore in their password the get the error message – Password does not meet password rules return code 1.Example of password - aa#12345  Our sysval QPWDLVL is set at 0  Thank you.

Answer Question   |  June 24, 2010  3:39 PM
AS/400, AS/400 Password complexity, AS/400 security
asked by:
55 pts.

Configure Single Sign On – Windows Server 2008
I am attpemting to athenticate using kerberos on Active Directory – Windows Server 2008. The System i configuration planning documentation maps the user account to the principal on Windows 2000 using ktpass. How is this accomplished using Windows 2008?

Answer Question   |  June 14, 2010  7:17 PM
AS/400 security, iSeries V6R1, Single sign-on, Windows Server 2008, Windows Server configuration
asked by:
355 pts.

Is there any certification for iSeries
Hi am looking to find if there are any certifications for iSeries, irespective of the OS.

Answer Question   |  May 18, 2010  10:37 AM
AS/400 security, iSeries Certificates
asked by:
995 pts.

DLTMSGQ Command Security
One of our Operator’s was clearing message queues today and instead of clearing, she deleted them. I would like to change the command DLTMSGQ to *PUBLIC *EXCLUDE. Would this adversely affect processes? TIA

Answer Question   |  April 15, 2010  12:51 PM
AS/400 security
asked by:
645 pts.

Iseries SFTP
Can you please tell me the format for the sftp command to be able to include the username & password. I have tried something like this SFTP username/password@servername.com.au but with no success……..thanks  

Answer Question   |  May 25, 2010  4:58 AM
AS/400 FTP, AS/400 security, SFTP
asked by:
145 pts.

User Authority in AS/400
user A have auhtority on X Library and X library has a lot of query. But I want user A access only one query. how can I restrict him.

Answer Question   |  December 28, 2009  9:48 AM
AS/400 security, AS/400 user administration, AS/400 user authority
asked by:
65 pts.

Auditing an AS/400 Server
Hi Gilly400: please, is there any way to know who viewed or accessed my spoolfile???????

Answer Question   |  November 22, 2009  5:54 AM
AS/400 audit, AS/400 security, AS/400 Security Data, AS/400 Spooled Files
asked by:
35 pts.

Analyzing Security Audit Journal
Hello, could you please tell me where can I find a book, guide or course about Tracking and Analizing Security Audit Journal on iSeries?  I have tried Appendix F on Security Guide but there are not all entries and it does not explain how to analize records in journal.  Thanks a lot

Answer Question   |  November 5, 2009  2:46 PM
AS/400 audit, AS/400 journaling, AS/400 security, Security audits, V5R4
asked by:
15 pts.