IBM Security Z Security

Expand all | Collapse all

Access violation on *.LOCAL.* class WRITER for JES2

  • 1.  Access violation on *.LOCAL.* class WRITER for JES2

    Posted Mon August 24, 2020 10:18 AM
    ​​Hi,

    I have defined JES2 in a group with access READ on the class WRITER with profle *.LOCAL.* and still I get:

    BPXAS    ICH408I JOB(JES2    ) STEP(JES2    ) JES2.LOCAL.PRT90 CL(WRITER  )

                                  INSUFFICIENT ACCESS AUTHORITY                                    

                                  FROM *.LOCAL.* (G)                                              

                                  ACCESS INTENT(READ   )  ACCESS ALLOWED(NONE   )    

    And I I look at the JES2 access I get:
    ckgracf ACCESS JES2 WRITER `*.LOCAL.*`c            
    CKG582I 00 JES2 has READ access to WRITER *.LOCAL.*
               profile WRITER *.LOCAL.*                

    I must be missing soething obvious...

    Kr. Marc.

    ------------------------------
    Marc Massart
    ------------------------------


  • 2.  RE: Access violation on *.LOCAL.* class WRITER for JES2

    Posted Mon August 24, 2020 11:32 AM
    The ICH408I JOB(JES2) with no USER(xxxx) means the authorization is being done but the user cannot be identified.

    It could be a probe from outside z/OS or some other situation where the user can not be determined.    Possibly NJE from another node but userid doesn't exist on this LPAR.

    ------------------------------
    Dan Little
    ------------------------------