z/OS Security Server RACF System Programmer's Guide
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


User ID associations

z/OS Security Server RACF System Programmer's Guide
SA23-2287-00

Some RRSF functions require a previously established user ID association. A user ID association is an association between two user IDs, on the same or different RRSF nodes, that is defined to RACF® using the RACLINK command. Typically user ID associations are established between user IDs used by the same person.

There are two types of user ID association: peer and managed. A peer association allows either of the associated user IDs to direct commands to the other (see Overview of the RRSF function) and allows the associated user IDs to synchronize their passwords and password phrases (see Overview of the RRSF function). In a managed association, one of the user IDs is designated as the managing ID, and the other is designated as the managed ID. The managing user ID can direct commands to the managed ID, but the managed ID cannot direct commands to the managing ID. The user IDs in a managed association cannot synchronize their passwords.

Profiles in the RRSFDATA class control whether user ID associations can be defined, to which nodes they can be defined, and which users can define them. See Customizing and establishing security for RRSF for more information.

For more information on user ID associations, see z/OS Security Server RACF General User's Guide and z/OS Security Server RACF Security Administrator's Guide. For information on the RACLINK command, see z/OS Security Server RACF Command Language Reference.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014