IBM Support

PI20489: RATIONAL DEVELOPER FOR SYSTEM Z V9.0.0: MISLEADING ERROR MESSAGE WHEN LOGIN FAILS

Subscribe

You can track all active APARs for this component.

APAR status

  • Closed as program error.

Error description

  • In this scenario the userid attempting to login to RDZ server
    from RDZ
    client did not have access to the FEKAPPL RACF class. However
    the error
    message provided to the client was misleading.
    
    If the authentication is by userid and password, the message
    indicates that the
    password is revoked.
    
    If the authentication is by certificate, the message indicates
    that the certificate is revoked.
    
    Example message when authentication is by userid and password:
    "Failed to connect to the daemon with an unexpected exception:
    server failure: server failure:
    password revoked. Make sure the daemon is running on port xxxx"
    
    
    A proper error message in this case would be:
    "Failed to connect to the daemon with an unexpected exception:
    server failure: User xxxxxx
    has insufficient permission to profile FEKAPPL in the APPL
    class. RACROUTE AUTH
    returned SAF return code 8 - RACF return code =16 RACF reason
    code =8 "
    

Local fix

Problem summary

  • ****************************************************************
    * USERS AFFECTED: 01.All RDz users                             *
    ****************************************************************
    * PROBLEM DESCRIPTION: 01.When RDz user does not have RACF     *
    *                         access to the APPL class, the        *
    *                         response said "USERID is revoked"    *
    *                         when using a password, and "Invalid  *
    *                         Certificate" in using a              *
    *                         certificate. The error message in    *
    *                         the client dialog is quite           *
    *                         misleading.                          *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    01.When RDz user does not have RACF access to the APPL class,
       the response said "USERID is revoked" when using a password,
       and "Invalid Certificate" in using a certificate. The error
       message in the client dialog is quite misleading.
    

Problem conclusion

  • 01.Now, the following message will be shown when RDz user does
       not have RACF access to the APPL class: "server failure:
       User, userid has insufficient permission to profile FEKAPPL
       in the APPL class. RACROUTE AUTH returned SAF return code =
       nn - RACF return code = nn RACF reason code = nn"
    

Temporary fix

Comments

APAR Information

  • APAR number

    PI20489

  • Reported component name

    RATL DEV FOR SY

  • Reported component ID

    5724T0700

  • Reported release

    900

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2014-06-20

  • Closed date

    2014-08-16

  • Last modified date

    2014-08-25

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Modules/Macros

  •    FEKFENVR FEKFOMVS FEKFZOS
    

Fix information

  • Fixed component name

    RD/Z HOST

  • Fixed component ID

    5724T0723

Applicable component levels

  • R900 PSY UI20613

       UP14/08/25 I 1000

Fix is available

  • Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.



Document information

More support for: Rational Developer for System z

Software version: 9.0

Reference #: PI20489

Modified date: 25 August 2014