12.07.2015 Views

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

eTrust CA-Top Secret Security for z/OS and OS ... - SupportConnect

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

OpenEdition MVS / UNIX System Services SupportEach z/<strong>OS</strong> <strong>and</strong> <strong>OS</strong>/390 release has included new <strong>and</strong> more robust versions ofUNIX System Services (USS). Initially called OpenEdition by IBM, these servicesallow UNIX applications to run on a z/<strong>OS</strong> or <strong>OS</strong>/390 mainframe. Since, theirinitial appearance in MVS 5.2.2, <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> has provided the ability toper<strong>for</strong>m the UNIX security administration necessary to manage these services<strong>and</strong> the UNIX file system. Beyond the base requirements to support thisenvironment, <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> provides powerful trace <strong>and</strong> reportingfunctions that allow you to audit UNIX security events.UNIX security is based on users <strong>and</strong> groups having a unique binary identifier, aUserID (UID) or a GroupID (GID). <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> lets you to define UIDs<strong>and</strong> GIDs <strong>and</strong> give them to those users needing UNIX services. Additionally,<strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> provides the support to secure access to the UNIX filesystem.Specifically, <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> supports the following services in a UNIXSystem Services z/<strong>OS</strong> or <strong>OS</strong>/390 environment:■■■■■■■■Callable servicesHierarchical File System (HFS)Userid (UID) <strong>and</strong> Groupid (GID) definitionsHome <strong>and</strong> Path definitionsUNIX System Services AuditingUNIX System Services <strong>Security</strong> Trace FacilityUNIX System Services MVS Shell Setup Utility (ISHELL)Digital CertificatesThis section discusses <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> support <strong>for</strong> UNIX System Services(USS). Specifically, it covers these topics:■■■■■■■Acids needed to install UNIX System Services MVSDefining a default UID <strong>and</strong> GIDControlling access to UNIX System ServicesControlling access to the Hierarchical File System<strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> records <strong>for</strong> UNIX System ServicesLogging UNIX System Services MVS security callsTracing UNIX System ServicesFor explanations <strong>and</strong> syntax of <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> comm<strong>and</strong> functions, seethe Comm<strong>and</strong> Functions Guide. For details on the reporting facility available with<strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong>, see the Report <strong>and</strong> Tracking Guide.Implementing <strong>eTrust</strong> <strong>CA</strong>-<strong>Top</strong> <strong>Secret</strong> in a z/<strong>OS</strong> or <strong>OS</strong>/390 Environment 1–7

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!