Utilities

Table 1 lists the new and changed RACF® utilities. For information about the IRRDBU00 and IRRRID00 utilities, see z/OS Security Server RACF Security Administrator's Guide. For information about the IRRADU00 utility, see z/OS Security Server RACF Auditor's Guide. For more information about other RACF utilities, see z/OS Security Server RACF System Programmer's Guide.

Table 1. Summary of new and changed RACF utilities
Utility name Release Description Reason for change
IRRADU00 z/OS® V1R12
  • Updated to unload updated SMF type 80 records event codes 69, 73, and 83.
  • A new Writing your own Application subsection has been added
  • Logical record lengths have been modified for OUTDD, XMLFORM DD, and XMLOUT DD.
  • An attention notice has been added to IRRADU00 examples.
  • PKI Services
  • A reminder that IRRADU00 output can change with new releases of z/OS or when service is applied.
  • The extension of the blocksize of the IRRADU00 data set. This occurs when a record grows beyond the current LRECL size.
  • Reduce confusion regarding SMF utility's use of parameter called OUTDD.
IRRDBU00 z/OS V2R1
  • The database unload utility is able to extend processing for fields such as the certificate field in profiles in the DIGTCERT class. The certificate is processed to extract the subject's distinguished name, the issuer's distinguished name, and the signature algorithm in readable text format.
  • Record 0560 is updated to support GRCERT_KEY_TYPE.
  • Database Unload of Certificate DNs support
  • Enterprise PKCS #11 secure key support
z/OS V1R13
  • Record 0560 is updated to support the updated CERTPRVT field of the CERTDATA segment in the general template.
  • Record 0580 is updated to support the new CHKADDRS field of the KERB segment in the general template.
  • Hardware keys generated with elliptic curve cryptography (ECC) algorithms
  • Support for Network Authentication Service
z/OS V1R12
  • Record 0560 is updated to support the updated CERTPRVT field of the CERTDATA segment in the general template.
  • Record 05G0 is updated to support the new CSFSCPW field of the ICSF segment in the general template.
  • Keys generated with elliptic curve cryptography (ECC) algorithms
  • Support of ICSF encrypted symmetric keys and CP Assist for Cryptographic Function (CPACF). Also, APAR OA29193.