Setting ESM profiles


Set the external security manager (ESM) profiles in BMC AMI Resident Security Server, which provides the core functionality that supports EC for Venafi. For more information, see Administering in the RSS documentation.


The EC for Venafi gateway address space does not issue ESM commands, so it does not require elevated permissions for ESM. The address space requires sufficient authority to access the data sets in the started task JCL procedure, listen on the TCP port specified and make TCP connections to the EC for Venafi agent systems.

The EC for Venafi agent address spaces require the necessary ESM permissions to issue RACDCERT and RLIST commands for a RACF system, or GENCERT and GEREQ commands for a Top Secret or ACF2 systems.

 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*