z/OS Security Server RACF Messages and Codes
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


ICH429I

z/OS Security Server RACF Messages and Codes
SA23-2291-00

ICH429I
NON-MAIN PROGRAM IS IN CONTROL. ATTEMPT TO LOAD PROGRAM program-name FROM LIBRARY library-name FAILED.

Explanation

The user has only EXECUTE authority to the named program, by way of the PROGRAM profiles or the DATASET profile for the library. RACF® cannot allow use of the program because ENHANCED PGMSECURITY mode is in effect (FACILITY profile IRR.PGMSECURITY exists with an APPLDATA value of ENHANCED) and the environment was established by a program that did not have the MAIN attribute.

System action

Access is denied by RACF.

Routing code

9 and 11

Descriptor code

6

RACF Security Administrator Response

Or user Response:

Check for additional messages that provide further details, such as ICH428I. Verify that the first program executed in this execution environment (jobstep, or specified on TSOEXEC command or by way of IKJEFTSR service) has a specific PROGRAM profile that specifies the MAIN attribute. If not, redefine the program to have MAIN, if it is a program that you trust to maintain the environment properly for using conditional access, or change the way you invoke the program (for example, under TSO consider invoking the program by way of the TSOEXEC command), or change the system to run in BASIC PGMSECURITY mode, or define the program as one that needs BASIC PGMSECURITY mode by defining it with a specific PROGRAM profile that has an APPLDATA value of BASIC. Using a PROGRAM profile with BASIC provides less security, but might be necessary for some programs where you cannot use TSOEXEC.

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014