IBM United States
Software Announcement 203-016
January 28, 2003

IBM Policy Director Authorization Services for z/OS and OS/390 V1.2

 ENUS203-016.PDF (49KB)


At a Glance

IBM Policy Director Authorization Services for z/OS and OS/390:

  • Enables centrally manageable security policies for cross-platform e-business applications
  • Builds on a z/OS and OS/390 security infrastructure patterned after open industry standards
  • Is available at no charge
  • New for V1.2:
    • Uses Secure Sockets Layer (SSL) for highly secure communications

For ordering, contact:

Your IBM representative, an IBM Business Partner, or the Americas Call Centers at 800-IBM-CALL (Reference: ME001).

Overview

Policy Director Authorization Services for z/OS™ and OS/390® provides a comprehensive open policy management and access control infrastructure for e-business applications. This infrastructure allows z/OS and OS/390 to participate in an IBM Tivoli® Access Manager for e-business secure domain. Policy Director Authorization Services is intended for customer environments that have complex security authorization needs spanning multiple systems and platform technologies including z/OS and OS/390.

New for Policy Director Authorization Services for z/OS and OS/390 V1.2, Secure Sockets Layer (SSL) is supported for highly secure communication between its authorization daemon (pdacld) and the master server.

Policy Director Authorization Services is available at no charge to customers. It is intended for customers who have a license for either:

  • OS/390 V2.10 (5647-A01)
  • z/OS V1.1 (5694-A01) or later
  • z/OS.e V1.3 (5655-G52) or later

Key Prerequisites

Refer to the Hardware Requirements and Software Requirements sections for details.

Planned Availability Date

January 31, 2003

Description

IBM Policy Director Authorization Services for z/OS and OS/390 provides an authorization daemon (pdacld) that allows z/OS and OS/390 to participate in an IBM Tivoli Access Manager for e-business V4.1 secure domain. It also provides support for an enhanced set of z/OS and OS/390 callable services that can be used from an application to provide sophisticated access control processing. These enhanced callable services are patterned after the aznAPI Open Group Standard for cross-platform authorization services.

Policy Director Authorization Services allows custom applications to make detailed application-level authorization decisions. Using the Policy Director Authorization Services callable services, you can build a consistent authorization model into your corporate applications. This leverages the cross-platform services of Policy Director Authorization Services that may help reduce application development time and cost.

New for Policy Director Authorization Services for z/OS and OS/390 V1.2, Secure Sockets Layer (SSL) is supported for highly secure communication between its authorization daemon (pdacld) and the master server. The previous release (V1.1) required or supported IBM Distributed Computing Environment (DCE) and this environment is no longer supported.

The Tivoli Access Manager for e-business function included with Policy Director Authorization Services at no additional charge includes:

  • Tivoli Access Manager for e-business base services for AIX®, Windows NT®, Windows® 2000, Solaris, HP-UX, and Linux on zSeries™ distributed servers that include:
    • Management Server, which maintains the primary authorization policy database for the secure domain. It is responsible for updating all authorization database replicas and maintaining location information about other Access Manager for e-business servers.
    • Directory, a powerful enterprise directory used to store Tivoli Access Manager for e-business user and group credentials. It is an open cross-platform program optimized to support LDAP-enabled applications. The Directory uses DB2 Universal Database® as its transaction store for directory data, extending the performance and availability of the Tivoli Access Manager for e-business. The LDAP server contained within z/OS Security Server or OS/390 SecureWay® Security Server is used in conjunction with Directory as supplied with the Tivoli Access Manager for e-business function for the supported workstation platforms of AIX, Windows NT, or Windows 2000. The z/OS Security Server and OS/390 SecureWay Security Server LDAP Server can also be used in place of Directory that is supplied with Tivoli Access Manager for e-business.
    • IBM Global Security Toolkit SSL, provided by IBM Global Security Toolkit, is used as a highly secure communication mechanism between the Tivoli Access Manager for e-business Management Server and Policy Director Authorization Services.
  • Web Portal Manager, a Web-based graphical application used to add and delete users or groups and apply access controls (ACLS) to the objects and the resources secured by the Tivoli Access Manager for e-business.

Product Positioning

Centralized policy-driven security authorization facilities, such as those provided by IBM Tivoli Access Manager for e-business, will play a critical role in implementing cross-platform e-business solutions on the Web and over extranets. IBM Policy Director Authorization Services provides the infrastructure that enables z/OS and OS/390 to participate in a Tivoli Access Manager secure domain. Policy Director Authorization Services is intended for customer environments that have complex security authorization needs spanning multiple systems and platform technologies including z/OS and OS/390. Policy Director Authorization Services may be used from typical applications such as z/OS and OS/390 UNIX® System Services applications, started tasks, or batch jobs which execute under a task mode environment.

Policy Director Authorization Services allows applications and middleware running on z/OS and OS/390 to make authorization decisions based on policies set in a single place by an administrator. This function will be available on several release levels of z/OS and OS/390 so that you can take advantage of the cross-platform authorization services. Policy Director Authorization Services contains base authorization infrastructure which builds on the existing security infrastructure provided by the z/OS Security Server and OS/390 SecureWay Security Server.

Key to a Policy Director Authorization Services implementation is its usage by applications and middleware. Your cross-platform e-business applications need the services provided by a central security policy manager, along with a level of integration with z/OS and OS/390 native security as provided by z/OS Security server. Policy Director Authorization Services for z/OS and OS/390 works cooperatively with Tivoli Access Manager for cross-platform support and also interfaces with z/OS and OS/390 platform security services. Through this cooperation and the set of services provided by Policy Director Authorization Services, you may be able to implement interoperable cross-platform security.

Hardware and Software Support Services

IBM SmoothStart™ and Installation Services are not provided.

Reference Information

For additional information on IBM Tivoli security management products, refer to:

  • Software Announcement 200-105 , dated April 25, 2000
  • Software Announcement 200-404 , dated November 14, 2000
  • Software Announcement 201-010 , dated January 23, 2001
  • Software Announcement 201-272 , dated September 25, 2001
  • Software Announcement 202-082 , dated April 9, 2002
  • Software Announcement 202-253 , dated October 8, 2002

For additional information on OS/390 V2R10, refer to:

  • Software Announcement 200-145 , dated May 16, 2000

For additional information on z/OS, refer to:

  • z/OS V1R1 Software Announcement 200-352 , dated October 3, 2000
  • z/OS V1R2 Software Announcement 201-044 , dated February 27, 2001
  • z/OS V1R3 Software Announcement 201-248 , dated September 11, 2001
  • z/OS V1R4 Software Announcement 202-031 , dated February 19, 2002
  • z/OS V1R5 Software Announcement 202-190 , dated August 13, 2002

For additional information on z/OS.e, refer to:

  • z/OS.e V1.3 Software Announcement 202-032 , dated February 19, 2002
  • z/OS.e V1.4 Software Announcement 202-191 , dated August 13, 2002

Trademarks

 
z/OS, zSeries, and SmoothStart are trademarks of International Business Machines Corporation in the United States or other countries or both.
 
OS/390, AIX, DB2 Universal Database, and SecureWay are registered trademarks of International Business Machines Corporation in the United States or other countries or both.
 
Windows NT and Windows are registered trademarks of Microsoft Corporation.
 
UNIX is a registered trademark of the Open Company in the United States and other countries.
 
Tivoli is a registered trademark of International Business Machines Corporation or Tivoli Systems Inc. in the United States or other countries or both.
 
Other company, product, and service names may be trademarks or service marks of others.

Technical Information

Specified Operating Environment

Hardware Requirements

Policy Director Authorization Services for z/OS™ and OS/390® runs on the same servers supported by OS/390 V2R10 and z/OS V1.1 or later.

  • Servers supported by OS/390 V2.10 (5647-A01) include:
    • All models of the IBM eServer zSeries™ 900 server
    • All models of the IBM eServer zSeries 800 server
    • All models of the S/390 Parallel Enterprise Servers except Release 1 models
    • All models of the S/390® Multiprise®
    • All PC Server S/390 servers and RS/6000® with S/390 Server-on-Board models
    • All S/390 Integrated Servers
    • Equivalent servers
  • Servers supported by z/OS V1.1 (5694-A01) or later include:
    • All models of the IBM eServer zSeries 900 server
    • All models of the IBM eServer zSeries 800 server
    • S/390 Parallel Enterprise Servers — Generation 5 (G5) and Generation 6 (G6) models
    • All models of the S/390 Multiprise 3000 server
    • Equivalent servers
  • Servers supported by z/OS.e V1.3 (5655-G52) or later include:
    • All models of the IBM eServer zSeries 800 server
    • Equivalent servers

The Tivoli® Access Manager function must be installed on a workstation capable of operating AIX®, Windows NT®, Windows® 2000, Solaris, HP-UX or Linux for zSeries. Refer to the Customer Responsibilities section for additional information.

Software Requirements

Prerequisite Requirements

Policy Director Authorization Services requires the following to operate:

  • Operating systems:
    • OS/390 V2.10 and z/OS V1.1 require:
      • PTF UW99371 for APAR OW49960
    • z/OS V1.2 and z/OS V1.3 require:
      • PTF UW99372 for APAR OW49960
    • z/OS.e requires:
      • PTF UW99372 for APAR OW49960
  • LDAP
    • OS/390 V2.10 and z/OS V1.1 require:
      • PTF UW84685 for APAR OW51996
      • PTF UW86929 for APAR OW53426
      • PTF UW87197 for APAR OW53447
      • PTF UW87590 for APAR OW53817
      • PTF UW99407 for APAR OW50971
    • z/OS V1.2, z/OS V1.3, and z/OS.e require:
      • PTF UW84686 for APAR OW51996
      • PTF UW86931 for APAR OW53426
      • PTF UW87198 for APAR OW53447
      • PTF UW87591 for APAR OW53817
      • PTF UW99408 for APAR OW50971
  • RACF® (if used as your Security Manager) plus:
    • OS/390 V2.10 and z/OS V1.1 require:
      • PTF UW86651 for APAR OW52956
      • PTF UW99369 for APAR OW49959
    • z/OS V1.2 requires:
      • PTF UW86652 for APAR OW52956
      • PTF UW99370 for APAR OW49959
  • SSL
    • OS/390 V2.10 and z/OS V1.1 require:
      • PTF UW84118 for APAR OW51164
      • PTF UW85214 for APAR OW52700
      • PTF UW84119 for APAR OW51164 for Security Level 3
    • z/OS V1.2, z/OS V1.3, and z/OS.e require:
      • PTF UW84120 for APAR OW51164
      • PTF UW85215 for APAR OW52700
      • PTF UW93993 for APAR OW56144
      • PTF UW84121 for APAR OW51164 for Security Level 3
  • For operating system platforms supported by the IBM Tivoli Access Manager for e-business, refer to Release Notes V4.1 (SC32-1130) at:

Select the product IBM Tivoli Access Manager for e-business, then select Product Information.

Compatibility: Policy Director Authorization Services V1.2 interoperates with IBM Tivoli Access Manager for e-business V4.1 and is the only version of Tivoli Access Manager for e-business supported at this time.

Limitations: Policy Director Authorization Services for z/OS or OS/390 does not supply all functions available from pdacld daemons that run on other operating systems. The pdacld daemon that runs on z/OS or OS/390 does not support:

  • External service modules
  • All of the external C interfaces (azn and ivadmin APIs)
  • All of the external authorization and administration Java™ classes
  • Client connections from applications running off of the z/OS or OS/390 system
  • Any directory besides IBM Directory Server, z/OS Security Server LDAP, or OS/390 SecureWay® Security Server LDAP as the User Registry by Policy Director Authorization Services

The native System Authorization Facility (SAF) programming services provided by Policy Director Authorization Services are analogous to the SAF callable services supported by the Security Server (RACF) and have the same environment restrictions.

Planning Information

Customer Responsibilities: Policy Director Authorization Services for z/OS or OS/390 and Tivoli Access Manger for e-business components use Secure Sockets Layer (SSL) for highly secure communication. At your distributed server, you must install and configure IBM Global Security Toolkit. On z/OS or OS/390, you must make sure that your OS/390 or z/OS System SSL is accessible to Policy Director Authorization Services for z/OS and OS/390.

Any z/OS or OS/390 system that will run a pdacld must be configured into a Tivoli Access Manager for e-business secure domain. All z/OS or OS/390 systems that will run a pdacld and that want to be part of the same Tivoli Access Manager for e-business secure domain must configure into the same Tivoli Access Manager for e-business Management Server daemon (pdmgrd).

Policy Director Authorization Services for z/OS or OS/390 also requires an LDAP directory for the Policy Director User Registry. The registry can be on or off the zSeries 800 (z800) and 900 (z900) or S/390 server. If you are using RACF as your z/OS or OS/390 Security Manager, you must install the LDAP server on the z800, z900, or S/390 server and, at a minimum, configure it to use the Program Call (PC) callable and extended operations backend support with the support supplied with prerequisite APAR OW50971. Configured in this manner, the LDAP Server on the z800, z900, or S/390 server can contact your Policy Director User Registry if it is not on the z800, z900, or S/390 server. To use the LDAP Server on the z800, z900, or S/390 server as the Policy Director User Registry, the TDBM backend must be configured in addition to the above requirements.

Policy Director Authorization Services for z/OS and OS/390 also requires that the Tivoli Access Manager for e-business Management Server function be installed on one or more workstations or servers capable of operating AIX, Windows NT, Windows 2000, Solaris, HP-UX, or zSeries for Linux at the release levels specified in the Software Requirements section. This workstation or server must be accessible via a TCP/IP connection to the z800, z900, or S/390 server where Policy Director Authorization Services function is running. Tivoli Access Manager for e-business Management Server V4.1 is packaged with Policy Director Authorization Services for z/OS and OS/390, on the CD-ROMs labeled IBM Tivoli Access Manager Base, and is the only version of the Tivoli Access Manager management server supported at this time . If you are deploying the Tivoli Access Manager for e-business management server at a different version for other purposes, you must also install V4.1 on a separate workstation or server and create a separate secure domain if you intend to use Policy Director Authorization Services for z/OS and OS/390.

Packaging

The Policy Director Authorization Services product package is distributed with the following:

  • Licensed program code on either 3480 or 4-mm tape
  • Licensed program code in Japanese on either 3480 or 4-mm tape (optionally available if ordered)
  • IBM Tivoli Access Manager V4.1 Base function CD-ROMs:
    • LK3T-8707 for AIX
    • LK3T-8708 for Solaris
    • LK3T-8710 for Linux on zSeries
    • LK3T-8711 for HP-UX
    • LK3T-8712 for Windows
    • LK3T-8713 for Web Portal Manager (Windows)
    • LK3T-8714 for Web Portal Manager (Solaris)
    • LK3T-8715 for Web Portal Manager (AIX)
    • LK3T-8722 Language Support
  • Four documents for Policy Director Authorization Services:

                                                            Form
Document                                     Language       Number
 
Licensed Program                             English        GC24-6029
 Specifications
Program Directory                            English        GI10-4730
Memo to New Licensees                        English        GI10-4738
Installation Road Map for IBM                English        GI10-4739
 Tivoli Access Manager for
 e-business (Base Services),
 V4.1

System Integrity

IBM and Tivoli will accept APARs where the installation of Policy Director Authorization Services for z/OS and OS/390 or Tivoli Access Manager for Business Integration — Host Edition on z/OS and OS/390 introduces an exposure to system integrity.

Security, Auditability, and Control

IBM Policy Director Authorization Services for z/OS and OS/390 provides a comprehensive open policy management and access control infrastructure for cross-platform e-business applications. This infrastructure enables granular access to information required by your employees, partners, and customers to do business more securely. Policy Director Authorization Services, at its core, provides an authorization service that will result in the approval or denial of client requests to perform operations on application level protected resources in a secure domain.

The suite of security services offered by the z/OS environment are enhanced by the functions available in the optional Security Server for z/OS feature. The customer is responsible for evaluation, selection, and implementation of security features, administrative procedures, and appropriate controls in application systems and communication facilities.

Ordering Information

Order Policy Director Authorization Services through the Internet

ShopzSeries (formerly SHOPS390) provides an easy way to plan and order your z/OS products (including Policy Director Authorization Services) with your z/OS ServerPac or CBPDO. It will analyze your current installation, determine the correct product migration, and present your new configuration based on z/OS. Additional products can also be added to your order (including determination of whether all product requisites are satisfied).

ShopzSeries is available in the U.S. and several countries in Europe. In countries where ShopzSeries is not available yet, contact your IBM representative to handle your order via the traditional IBM ordering process.

For more details and availability, visit the ShopzSeries Web site at:

Current Licensees of Policy Director Authorization Services

Will be sent a program reorder form that can be returned directly to IBM Software Delivery and Fulfillment. Reorder forms are scheduled to be mailed by February 14, 2003. Reorder forms should be returned to IBM Software Delivery and Fulfillment and will be processed within 10 workdays of receipt.

When Policy Director Authorization Services Release 2 is available, Release 1 will no longer be available.

Program Services Discontinuance: Effective April 4, 2004 , Central Service, including the IBM Support Center, will be discontinued for Policy Director Authorization Services for z/OS and OS/390 V1.1. APARs will be accepted up to date of service discontinuance or program services. At IBM's discretion, a final release may be sent to users of record that incorporates corrections for valid APARs received up to the date of discontinuance.

APARs may be submitted after the date of discontinuance under the following conditions:

  1. The APARs address problems resulting from software service changes made in the latest release of the program.
  2. The APARs must be submitted within 90 days of the date of the following, whichever is earlier:
    1. Availability of last release of the program from IBM, in physical or electronic format
    2. Availability of the PTF from IBM, in physical or electronic format
  3. These APARs will be handled in accordance with the program services provided prior to the date of the program services discontinuance.

Following announcement of Policy Director Authorization Services V1.2, current licensees of the affected programs will receive notification of the program services discontinuance directly from IBM Software Delivery and Fulfillment.

New Licensees of Policy Director Authorization Services

Policy Director Authorization Services can be ordered as a no-charge stand-alone product or as a optional feature within the Customized Offerings (CBPDO, ServerPac, Systempac®). Non-customized items (for example, CD-ROMs, Memos, Hardcopy Publications) will continue to be shipped via the stand-alone product. Policy Director Authorization Services V1.2 will not be available in the Customized Offerings on the planned availability date, January 31, 2003. Policy Director Authorization Services V1.2 will be available in the Customized Offerings soon.

Orders for new licenses can be placed now.

Registered customers can access IBMLink™ for Ordering Information and Charges.

Shipment will begin on the planned availability date.

  • Orders entered with a scheduled date before the planned availability date, January 31, 2003, will be shipped Policy Director Authorization Services V1.1.
  • Orders entered with a scheduled shipment date after planned availability, January 31, 2003, will be shipped Policy Director Authorization Services V1.2. Unless a later date is specified, an order is scheduled for the week following order entry.

New users of Policy Director Authorization Services should specify:

          Type           Model
 
          5655           F95

Basic License: To order a basic license, specify the Policy Director Authorization Services V1.2 program number 5655-F95 and feature number 9001 for asset registration. Proceed to select the license media feature numbers listed and billing feature (no charge feature number), which are required, and then select any optional feature numbers.

Policy Director Authorization Services is available at no charge to customers. It is intended for customers who have a license for OS/390 V2R10 (5647-A01) or z/OS V1R1 (5694-A01) or later.

                                                       No Charge
                                   Program             Feature
Description                        Number              Number
 
Policy Director                    5655-F95            0001
 Authorization Services

When Policy Director Authorization Services V1.2 is available, V1.1 will no longer be available.

Basic Machine-Readable Material: Policy Director Authorization Services for z/OS and OS/390

To order the base program code for Policy Director Authorization Services, select the feature number of the desired distribution medium.

Policy Director
Authorization                    Feature                 Distribution
Services V1.2                    Number                  Medium
 
Base                             5802                    3480 Tape
Base                             6546                    4-mm Tape

The optional feature for Policy Director Authorization Services provides the messages translated in Japanese. To order, select the feature number of the desired distribution medium. When ordering the Japanese support, you will also receive the base product of Policy Director Authorization Services with your order.

Policy Director
Authorization                    Feature                 Distribution
Services V1.2                    Number                  Medium
 
Japanese                         5812                    3480 Tape
Japanese                         6547                    4-mm Tape

For a list of material received when Policy Director Authorization Services for z/OS and OS/390 is ordered, refer to the Packaging section.

Customization Options: Select the appropriate feature numbers to customize your order to specify the delivery options desired. These features can be specified on the initial or MES orders.

Example: If publications are not desired for the initial order, specify feature number 3470 to ship media only. For future updates, specify feature number 3480 to ship media updates only. If, in the future, publication updates are required, order an MES to remove feature number 3480; then, the publications will ship with the next release of the program.

                                                    Feature
Description                                         Number
 
Initial Shipments
 
Serial Number Only (suppresses shipment             3444
 of media and documentation)
 
Ship Media Only (suppresses initial                 3470
 shipment of documentation)
 
Ship Documentation Only (suppresses                 3471
 initial shipment of media)
 
Update Shipments
 
Ship Media Updates Only (suppresses                 3480
 update shipment of documentation)
 
Ship Documentation Only (suppresses                 3481
 update shipment of media)
 
Suppress Updates (suppresses update                 3482
 shipment of media and documentation)
 
Expedite Shipments
 
Local IBM Office Expedite                           3445
 (for IBM use only)
 
Customer Expedite Process Charge                    3446
 ($30 charge for each product)

Expedite shipments will be processed to receive 72-hour delivery from the time IBM Software Delivery and Fulfillment (SDF) receives the order. SDF will then ship the order via overnight air transportation.

Expedite shipments are for items delivered under stand-alone program number (5655-F95) but not for custom built offering deliverables.

Unlicensed Documentation: Publications and documents for Policy Director Authorization Services are available as Adobe PDF files, BookManager® files, or printed material. This material includes:

                                        Order              Format
Title                                   Number          PDF BKM Print
 
Licensed Program                        GC24-6029       X       X
 Specifications
Program Directory                       GI10-4730       X   X   X
Customization and Use                   SC24-6040       X   X
Memo to New Licensees                   GI10-4738       X
Installation Road Map for               GI10-4739       X   X   X
 IBM Tivoli Access
 Manager for e-business
 (Base Services), V4.1

BKM = BookManager

Note: An "X" in one of the columns indicates available formats.

Adobe PDF Files: Publications that are available in PDF format are provided on the IBM z/OS Internet Library at:

These publications are also available from the Publications Center Web site at:

The Publications Center is a worldwide central repository for IBM product publications and marketing material with a catalog of 70,000 items. Extensive search facilities are provided, as well as payment options via credit card. Furthermore, a large number of publications are available online in various file formats, which can currently be down-loaded free of charge.

You can view a PDF file using the Adobe Acrobat Reader, which is available free from the Adobe Web site at:

You can also print the entire publication or just the section in which you are interested.

BookManager Files: Publications that are available in BookManager format are provided on the IBM z/OS Internet Library at:

These publications are also available from the Publications Center Web site at:

You can view a BookManager file using BookManager READ for z/OS (an element of z/OS), IBM Softcopy Reader, or any of the other BookManager READ products. IBM SoftCopy Librarian, which runs under Windows 95 or later and Windows NT 4.0 or later, can be used to manage BookManager files in a repository.

The Publication Notification System (PNS), which replaced the System Library Subscription Service (SLSS), is a World Wide Web notification system for IBM publications. You can register and create your own profile of publications by order number or product number. PNS will send you an e-mail note about new or revised publications based on your profile, and you can order the updates using any IBM publication ordering channel, typically the IBM Publications Center. Updated publications are only sent and billed if you respond to the electronic notification. Customers can register for PNS at:

Note: PNS subscribers most often order their publications via the Publications Center.

Printed Books: One copy of the Policy Director Authorization Services printed publications are supplied automatically with the basic machine-readable material. All printed Policy Director Authorization Services books are also available from the z/OS Internet Library and the IBM Publications Center.

The Tivoli Policy Director License Information document is supplied automatically with the basic machine-readable material and is also available from the Publications Center Web site.

Subsequent updates (technical newsletters or revisions between releases) to the publications shipped with the product will be distributed to the user of record for as long as a license for this software remains in effect. A separate publication order or subscription is not needed.

Customized Offerings

Most product media is shipped only via Customized Offerings (that is, CBPDO, ServerPac, SystemPac). Non-customized items (CDs, diskettes, source media, media kits) will continue to be shipped via the stand-alone product.

Terms and Conditions

The terms for Policy Director Authorization Services V1.2, as previously announced in Software Announcement 201-342 , dated November 27, 2001, licensed under the IBM Customer Agreement are unaffected by this announcement.

IBM Operational Support Services — Support Line: Yes

Prices

The prices provided in this announcement are suggested retail prices for the U.S. only and are provided for your information only. Dealer prices may vary, and prices may also vary by country. Prices are subject to change without notice. For additional information and current prices, contact your local IBM representative.

Policy Director Authorization Services is available at no charge to customers. It is intended for customers who have a license for OS/390 V2.10 (5647-A01), z/OS V1.1 or later (5694-A01), or z/OS.e V1.3 or later (5655-G52).

                                   Program      Feature
Description                        Number       Number      Charges
 
Policy Director                    5655-F95     0001        $0.00
 Authorization
 Services Base

For additional product information, refer to Software Announcement 201-342 , dated November 27, 2001.

Global Financing

IBM Global Financing offers competitive financing to credit-qualified customers to assist them in acquiring IT solutions. Our offerings include financing for IT acquisition, including hardware, software, and services, both from IBM and other manufacturers or vendors. Offerings (for all customer segments: small, medium, and large enterprise), rates, terms, and availability can vary by country. Contact your local IBM Global Financing organization or visit the Web at:

Order Now

To order, contact the Americas Call Centers, your local IBM representative, or your IBM Business Partner.

To identify your local IBM representative or IBM Business Partner, call 800-IBM-4YOU (426-4968).

 Phone:     800-IBM-CALL (426-2255)
 Fax:       800-2IBM-FAX (242-6329)
 Internet:  ibm_direct@vnet.ibm.com
 Mail:      The Americas Call Centers
            Dept. ME001
            P.O. Box 2690
            Atlanta, GA  30301-2690
 
 Reference: ME001

The Americas Call Centers, our national direct marketing organization, can add your name to the mailing list for catalogs of IBM products.

Note: Shipments will begin after the planned availability date.

Trademarks

 
The e-business logo, z/OS, zSeries, and IBMLink are trademarks of International Business Machines Corporation in the United States or other countries or both.
 
OS/390, Multiprise, S/390, RS/6000, AIX, RACF, SecureWay, Systempac, and BookManager are registered trademarks of International Business Machines Corporation in the United States or other countries or both.
 
Windows NT and Windows are registered trademarks of Microsoft Corporation.
 
Java is a trademark of Sun Microsystems, Inc.
 
Tivoli is a registered trademark of International Business Machines Corporation or Tivoli Systems Inc. in the United States or other countries or both.
 
Other company, product, and service names may be trademarks or service marks of others.