RACF resources for Packet Trace


MainView for IP uses the NMI real time Packet Trace callable service ( EZBRCIFR) for z/OS 2.1 and later. The NMI interface requires SAF resources be authorized to control application access using the NMI to gather real-time packets.

READ access must be given to the User ID associated with the MainView for IP PAS for the resources defined in the SERVAUTH class

The following SAF resource profiles require authorization:

  • EZB.TRCCTL. sysname. tcpame.OPEN
  • EZB.TRCCTL. sysame. tcpname.PKTTRACE
  • EZB.TRCSEC. sysame. tcpname.IPSEC (only for IPSEC encrypted connections)

The resources are defined in the SERVAUTH class. You are required to have READ access associated with the MainView for IP PAS.

Warning

Note

If profiles protecting these resources are not defined, MainView for IP will not be authorized to start a packet trace.

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*

MainView for IP 3.5