IBM Support

PK98052: PUMA SERVICE TO DISABLE ACCESS CONTROL ENFORCEMENT FOR READ OPERATIONS

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • This APAR adds a new configuration for the portal 'WP
    PumaStoreService' to disable access control enforcement for
    read operations. This will improve performance for search
    operations, but at the same time grant read access to users and
    user groups for all authenticated and anonymous users in the
    system.
    
    New Setting:
    
    'WP PumaStoreService':
    Property: store.puma_default.disableACforRead
    Value: true/false (default = false)
    
    Setting this property to true grants authenticated users and
    the anonymous user access to view all users, user groups and
    their attributes. All read operations against PUMA APIs on users
    and user groups are not access control enforced any more.
    
    To change or add the settings, use the WAS administrative
    console under. Select Resource Environment Providers -> 'WP
    PumaStoreService' -> Custom Properties.
    

Local fix

  • NA
    

Problem summary

  • PK97348 and PK98052 introduce a new PumaStoreService setting
    'store.puma_default.disableACforRead' to disable access control
    enforcement for read operations.
    

Problem conclusion

  • This APAR adds a new configuration for the portal 'WP
    PumaStoreService' to disable access control enforcement for read
    operations. This will improve performance for search operations,
    but at the same time grant read access to users and user groups
    for all authenticated and anonymous users in the system.
    
          store.puma_default.disableACforRead = [true | false]
    (default = false)
    
    Setting this property to true grants authenticated users and
    the anonymous user access to view all users, user groups and
    their attributes. All read operations against PUMA APIs on users
    and user groups are not access control enforced any more.
    
    To change or add the settings, use the WAS administrative
    console under. Select Resource Environment Providers -> 'WP
    PumaStoreService' -> Custom Properties.
    
    Failing Module(s):
       Portal Access Control
    
    Affected Users:
       All users
    
    Version Information:
       Portal Version(s): 6.1.0.1
        Pre-Requisite(s): PK97348
         Co-Requisite(s): ---
    
    PK98052 is also part of Cumulative Fix 03 for Portal 6.1.0.3.
    
    The Cumulative Fix is available on Fix Central:
    
    http://www.ibm.com/eserver/support/fixes/fixcentral/swgquickorde
    r?apar=PM09968&productid=WebSphere%20Portal&brandid=5
    
    Manuel Steps:
       None
    
    Platform Specific:
       This fix applies to all platforms.
    
    A fix is available from Fix Central:
    
    http://www.ibm.com/eserver/support/fixes/fixcentral/swgquickorde
    r?apar=PK98052&productid=WebSphere%20Portal&brandid=5
    
    You may need to type or paste the complete address into your Web
    browser.
    

Temporary fix

Comments

APAR Information

  • APAR number

    PK98052

  • Reported component name

    WEBSPHERE PORTA

  • Reported component ID

    5724E7600

  • Reported release

    61A

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2009-10-07

  • Closed date

    2010-04-08

  • Last modified date

    2010-04-08

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    WEBSPHERE PORTA

  • Fixed component ID

    5724E7600

Applicable component levels

  • R61A PSY

       UP

  • R61C PSY

       UP

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSHRKX","label":"WebSphere Portal"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"6.1.0.1","Line of Business":{"code":"LOB31","label":"WCE Watson Marketing and Commerce"}}]

Document Information

Modified date:
21 December 2021