IBM Support

OA63462: UPDATE PROCESSING OF IDT

A fix is available

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Update processing of IDT
    

Local fix

Problem summary

  • ****************************************************************
    * USERS AFFECTED:                                              *
    * RACF installations that wish to exploit Identity Token 2     *
    * (IDT2) support.                                              *
    ****************************************************************
    * PROBLEM DESCRIPTION:                                         *
    * RACF does not have support to generate an Identity Token     *
    * (IDT) from an existing ACEE security environment with        *
    * initACEE.                                                    *
    * RACF does not have support to authenticate protected user    *
    * IDs with an IDT with RACROUTE REQEST=VERIFY.                 *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    

Problem conclusion

  • Support to generate an Identity Token (IDT) from an existing
    ACEE security environment is added to initACEE.
    Support to authenticate protected user IDs with an IDT is added
    to RACROUTE REQEST=VERIFY.
    
    ---------------------------------------------------------------
    
    The RACF database templates are changed with this APAR.
    The updated version string is:
    $/VERSION OA63462 00000243.00000070
    
    ---------------------------------------------------------------
    
    As part of this enhancement, new keywords are added to the
    RDEFINE and RALTER commands.
    
    Note that ISPF panel support is not provided for the new
    command keywords.
    
    ---------------------------------------------------------------
    A new document has been created to document the enhanced
    functions in this APAR with the title:
    'APAR OA63462 - RACF Identity Token 2 (IDT2) Support'
    
    This document can be found and downloaded from the following
    location:
    ftp://ftp.software.ibm.com/s390/zos/racf/pdf/oa63462.pdf
    
    The following RACF publications have changes to support this
    APAR:
    z/OS Security Server RACF Security Administrator's Guide
    (SA232289xx)
    z/OS Security Server RACF Command Language Reference
    (SA232292xx)
    z/OS Security Server RACF Callable Services
    (SA232293xx)
    z/OS Security Server RACF RACROUTE Macro Reference
    (SA232294xx)
    z/OS Security Server RACF Macros and Interfaces
    (SA232288xx)
    z/OS Security Server RACF Data Areas
    (GA320885xx)
    

Temporary fix

Comments

APAR Information

  • APAR number

    OA63462

  • Reported component name

    RACF

  • Reported component ID

    5752XXH00

  • Reported release

    7C0

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2022-06-29

  • Closed date

    2023-06-23

  • Last modified date

    2023-08-01

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

    UJ92974 UJ92975

Modules/Macros

  • IRRRIA06 IRRADUTB IRRRIA04 IRRRIA02 IRRRIA01 IRRB6401 IRRREQTB
    IRRRIA00 ICHSEC07 IRRDBU03 IRRRSM00 IRRREQ02 IRRADU50 IRRADUX1
    RACDBUTB IRRTEMP2 RACDBULD IRRADU10 IRRRIN50 IRRRIN51 IRRSCHEM
    IRRDPSDS ICHRAU02 ICHRAU03 IRRADU86 ICHRIN00 IRRADU40 IRRTRC00
    ICHIRCVT IRRTRC01 IRRADULD IRRADU01 IRRRIN17 IRRADU00 IRRRIADC
    IRRRIACU
    

Publications Referenced
SA232289SA232292SA232293SA232294SA232288
GA320885    

Fix information

  • Fixed component name

    RACF

  • Fixed component ID

    5752XXH00

Applicable component levels

  • R7D0 PSY UJ92975

       UP23/07/20 P F307

  • R7C0 PSY UJ92974

       UP23/07/20 P F307

Fix is available

  • Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.

[{"Business Unit":{"code":"BU011","label":"Systems - zSystems software"},"Product":{"code":"SG19O"},"Platform":[{"code":"PF054","label":"z Systems"}],"Version":"7C0"}]

Document Information

Modified date:
01 August 2023