z/OS Security Server RACF Messages and Codes
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


ICH801I

z/OS Security Server RACF Messages and Codes
SA23-2291-00

ICH801I
accessor’ ATTEMPTING ‘access-type’ ACCESS OF ENTITY ‘name

Explanation

A RACROUTE REQUEST=AUTH is issued during a time when RACF® processing is inactive. Because RACF is inactive, it allows access to the following resources:
  • Resources accessed by started tasks that are marked as privileged or trusted in the RACF started procedures table (ICHRIN03)
  • A user's own data sets
  • Any other resources to which the operator allows access.

This message provides a record of the accesses to RACF-protected resources during the period when RACF is inactive.

The accessor represents a user ID, job name, or started-task name. The access-type represents the intended mode of system access (such as ALTER, CONTROL, UPDATE, or READ). The name is the name of the resource to which access was attempted, such as a data set name or a volume serial number. The name is one of the following names:
  • The name as specified on the RACROUTE macro (if SETROPTS REALDSN is in effect)
  • The name as modified according to RACF naming conventions (if SETROPTS NOREALDSN is in effect).

System action

If the accessor is a started task or a user accessing their own resource, RACF allows the access without operator intervention. If not, RACF issues message ICH802D requesting that the operator allow or deny the access.

Operator response

If RACF does not automatically allow the access, the following message ICH802D requests the operator to allow or deny access.

Routing code

1, 2, 9, and 11

Descriptor code

4

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014