XYGATE Access Control Reference Manual

XYGATE
®
Access Control Reference Manual
Introduction
XYPRO Technology Corporation xix Proprietary and Confidential
PASSONTIMEOUT OFF
DONOTSTOP $SYSTEM.SYSTEM.PATHTCP2
OPENSBYOBJECTS \*.$*.*.*
TRACKUSERID
START_LOGGED_OFF
COMMAND SAFEGUARD-TACL
OBJECT $SYSTEM.SYSNN.TACL
USER GROUP,USER
ACL \*.*,* ALIAS:"\*.*"
START_LOGGED_ON
PERCENT OFF
NULLNULLSTOP
EXECUTEHANGUP
CHECKCONNECTION 750 350
STOPONERROR 60,66,140,190,191
PASSONTIMEOUT OFF
OPENSBYOBJECTS \*.$*.*.*
BLANKPASSWORD
TRACKUSERID
Once you have the ACACL Command Entries created, you have to change your TACL
starting mechanisms. For hard-wired TACLs, change your CIIN file to start the TACL
via XAC.
Example:
Old CIIN
TACL/IN $TERM1, OUT $TERM1, NAME $T1,NOWAIT/
TACL/IN $TERM2, OUT $TERM2, NAME $T2,NOWAIT/
Becomes:
Example:
New CIIN
XAC ASYNCH-TACL -N$T1/IN $TERM1,OUT $TERM1,NOWAIT/
XAC ASYNCH-TACL -N$T2/IN $TERM2,OUT $TERM2,NOWAIT/
For TCP/IP terminals, you must modify the TACL service in SCF for your TCP/IP
process.
Example:
SCF
SCF - T9082G02 - (06JAN06) (31OCT05) - 03/23/2011 07:45:03 System \XYS7000
(C) 1986 Tandem (C) 2006 Hewlett Packard Development Company, L.P.
(Invoking \XYS7000.$DATAA.XXXXX.SCFCSTM)
1-> assume process $ztnp2
PROCESS $ZTNP2 2-> info service TACL
TELSERV Info SERVICE \XYS7000.$ZTNP2.TACL
Name *Type *Subtype *Access *Display *Program
TACL CONVERSATION DYNAMIC ALL ON $SYSTEM SYS03 TACL
PROCESS $ZTNP2 3-> ALTER SERVICE TACL, PROG $SYSTEM.XYGATEAC.XYGATEAC,PARAM
"AUDITED-TCPIP-TACL"
PROCESS $ZTNP2 4-> INFO SERVICE TACL,DETAIL
TELSERV Detailed Info SERVICE \XYS7000.$ZTNP2.tacl