What setup is required for Hardware Configuration Manager (HCM) Security with CA ACF2?

Document ID : KB000028113
Last Modified Date : 14/02/2018
Show Technical Document Details

Question:  

What setup is required for Hardware Configuration Manager (HCM) Security with CA ACF2?

Answer: 

The Hardware Configuration Manager (HCM) is a programmable workstation based client/server interface to HCD (Hardware Configuration Definition) that combines the logical and physical aspects of hardware configuration management.

The HCM Dispatcher runs as a started task. Any logonid defined for the HCM Dispatcher started task needs to have permission to use UNIX System Services. You can set up a logonid for HCM as follows:

SET LID
INSERT CBDQDISP NAME(HCM dispatcher logonid) STC GROUP(stcgroup) HOME(/) OMVSPGM(/bin/sh) UID(4711)

If the group assigned to the HCM started task is not already defined, you need to create a group profile for it. In this example the stcgroup is assigned a GID of 20. The following is an example of the necessary commands:

SET PROFILE(GROUP) DIV(OMVS)
INSERT stcgroup GID(20)

Once you create the required records, you have to tell eTrust CA-ACF2 about the new records before they go into effect. To do this, issue the following commands:

F ACF2,REBUILD(GRP),CLASS(P)
F ACF2,REBUILD(USR),CLASS(P)
F ACF2,OMVS

In addition to the USS setup, the HCM started task automatically accesses SYS1.NUCLEUS, so any user of HCM must have read access permission for SYS1.NUCLEUS.