Safeguard Management Programming Manual (G06.29+, H06.08+, J06.03+)
Safeguard Management Programming Manual—422086-028
1-1
1 Introduction
This manual describes the token-oriented programmatic interface to the Safeguard
software. The Safeguard software is a group of programs that supplements the
security features of the operating system. It is a powerful tool that provides a
comprehensive security system using authentication, authorization, and auditing:
•
Authentication: Allows you to verify a user name and password when a user
requests access to the system.
•
Authorization: Allows you to check access control lists to determine whether a user
has authority to access an object.
•
Auditing: Allows you to record attempts to authenticate users, to access system
objects, or to access security records.
For more information about the Safeguard software, see the Safeguard User's Guide
and the Safeguard Reference Manual.
Objects Controlled by Safeguard
Objects and subjects controlled by the Safeguard software include:
The Safeguard software also controls various user security requirements, such as
access to protected disk files and user authentication attempts.
Safeguard Management Functions
Table 1-1 lists the Subsystem Control Point (SCP) ZCOM commands.
Disk files Volumes and subvolumes
Devices and subdevices Processes and subprocesses
Terminals Audit pools
Users and aliases User groups
Table 1-1. Safeguard Subsystem Management Commands (page1of3)
Command
(zcom-cmd- )
Object Type
(zcom-obj-)
Description
(SAFECOM command)
activate user Thaws user authentication records.
alias Thaws user alias authentication records.
prot Thaws object protection records.
LU Thaws a terminal definition.