INSUFFICIENT ACCESS AUTHORITY When Creating a Data set with CA XCOM for z/OS.

Document ID : KB000023669
Last Modified Date : 14/02/2018
Show Technical Document Details

Problem: 

INSUFFICIENT ACCESS AUTHORITY When Creating a Data set with CA XCOM for z/OS.  The SYSLOG will have a more detailed message, such as:

ICH408I USER(XCOM ) GROUP(XXXX ) NAME(STC- XCOM ) DATASET NAME VOL(XXXXX) INSUFFICIENT ACCESS AUTHORITY

NOTE: This is an RACF message. The actual error message will vary according to your security package.

Cause: 

This indicates that the XCOM Started Task did not have sufficient authority to create the data set. When CA XCOM Data Transport opens a file, the security package uses the access authority granted to the CA XCOM Data Transport address space rather than to the user.

Resolution:

Security must be configured correctly for the XCOM Started Task. the CA XCOM Data Transport started task needs a security profile that allows the full range of file transfers to be implemented; otherwise, even when the user has authorization to access a data set, a 913 abend code may be generated.

Additional Information:

Please see topic Access Authorization in the CA XCOM for z/OS 12.0 Administering Guide:

When CA XCOM Data Transport opens a file, the security package uses the access authority granted to the CA XCOM Data Transport address space rather than to the user. Therefore, CA XCOM Data Transport should be given access authority for all data sets (except for sensitive data sets that will never be needed by CA XCOM Data Transport users). 913 abends indicate that a user has authorization to access a data set, but the CA XCOM Data Transport address space does not. In this case, CA XCOM Data Transport sends an error message to the user.