Hi Sander,
The data associated with the FACTOR.AZFSTC profile is indeed for the "STC" configuration as set via AZFEXEC.
Creating a profile under the FACTOR namespace in the MFADEF class allows a sufficiently-authorized IRRSFA64 caller to:
- associate arbitrary blobs of binary data (settings) with the profile
- associate Factor Tag Data (string name/value pairs, in a named section) with specific User IDs
FACTOR.AZFSTC was the first 'non-traditional' profile in the FACTOR namespace, and has been used since the initial release of the product. It's used to hold settings data, but isn't associated with any user tags.
Z MFA 2.3 supports new FACTOR namespace profiles: AZFMETAS, AZFFALBK, and AZFOIDC1. Each has its purpose, and each is also somehow 'non-traditional' relative to things like AZFTOTP1, etc.
Regards,
-Jared
------------------------------
Jared Hunter
Strategic Architect, Security
Rocket Software, Inc.
------------------------------
Original Message:
Sent: Mon January 22, 2024 09:25 AM
From: Sander De Graaf
Subject: How to display MFA data from RACF database
I encountered this profile last friday; The MFA 2.3 documentation writes to create this profile. I wondered what kind of "factor" it was, because the profile starts with "FACTOR." Reading now that it has "hidden" data; I hope that it's the settings from AZFEXEC; or else where would that be stored?
The fields that Rob talks about, will unfortunately not help for this particular profile; but are very useful.
------------------------------
Sander De Graaf
------------------------------
Original Message:
Sent: Mon January 22, 2024 04:28 AM
From: Rob van Hoboken
Subject: How to display MFA data from RACF database
zSecure users will be happy to see a slew of MFA fields and integration in the user details display and general resource segment data.
------------------------------
Rob van Hoboken
------------------------------