309 lines
21 KiB
HTML
309 lines
21 KiB
HTML
|
<?xml version="1.0" encoding="UTF-8"?>
|
||
|
<!DOCTYPE html
|
||
|
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
||
|
<html lang="en-us" xml:lang="en-us">
|
||
|
<head>
|
||
|
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
|
||
|
<meta name="security" content="public" />
|
||
|
<meta name="Robots" content="index,follow" />
|
||
|
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
|
||
|
<meta name="DC.Type" content="concept" />
|
||
|
<meta name="DC.Title" content="Lock function of security-related system values" />
|
||
|
<meta name="abstract" content="Find information about how to lock and unlock system values. Only some system values can be locked. This will provide you with a description of the lock function, what system values can be locked, and how to lock and unlock them." />
|
||
|
<meta name="description" content="Find information about how to lock and unlock system values. Only some system values can be locked. This will provide you with a description of the lock function, what system values can be locked, and how to lock and unlock them." />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzconcepts.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzoverviewparent.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqautovrt.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqdevrcyacn.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqinactmsgq.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqdscjobitv.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqrmtsrvatr.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdlvl.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdminlen.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdmaxlen.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdrqddgt.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdlmtajc.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdlmtchr.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdlmtrep.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdposdif.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdrqddif.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdexpitv.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqpwdvldpgm.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqfrccvnrst.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqalwobjrst.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqvfyobjrst.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqsecurity.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqretsvrsec.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzquseadpaut.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqcrtaut.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqshrmemctl.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqalwusrdmn.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqscanfs.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqscanfsctl.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqmaxsign.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqmaxsgnacn.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqdspsgninf.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqlmtdevssn.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqlmtsecofr.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzqrmtsign.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzlockunlock.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzfinder.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzoverviewparent.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzakzlockunlock.htm" />
|
||
|
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
|
||
|
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 1998, 2006" />
|
||
|
<meta name="DC.Format" content="XHTML" />
|
||
|
<meta name="DC.Identifier" content="rzakzlocksecurity" />
|
||
|
<meta name="DC.Language" content="en-us" />
|
||
|
<!-- All rights reserved. Licensed Materials Property of IBM -->
|
||
|
<!-- US Government Users Restricted Rights -->
|
||
|
<!-- Use, duplication or disclosure restricted by -->
|
||
|
<!-- GSA ADP Schedule Contract with IBM Corp. -->
|
||
|
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
|
||
|
<link rel="stylesheet" type="text/css" href="./ic.css" />
|
||
|
<title>Lock function of security-related system values</title>
|
||
|
</head>
|
||
|
<body id="rzakzlocksecurity"><a name="rzakzlocksecurity"><!-- --></a>
|
||
|
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
|
||
|
<h1 class="topictitle1">Lock function of security-related system values</h1>
|
||
|
<div><p>Find information about how to lock and unlock system values. Only
|
||
|
some system values can be locked. This will provide you with a description
|
||
|
of the lock function, what system values can be locked, and how to lock and
|
||
|
unlock them.</p>
|
||
|
<p>Most security system values can be altered only by a user with Security
|
||
|
administrator (*SECADM) and All object (*ALLOBJ) special authorities. To prevent
|
||
|
even these users from changing these system values during normal operation,
|
||
|
system service tools (SST) and dedicated service tools (DST) provide an option
|
||
|
to lock these security values.</p>
|
||
|
<p>The default value is <span class="uicontrol">Yes</span>; therefore, users can change
|
||
|
security-related system values.</p>
|
||
|
<p>The following table identifies the system values that are affected by this
|
||
|
option (Both the iSeries™ Navigator
|
||
|
name and the character-based name are specified.):</p>
|
||
|
|
||
|
<div class="tablenoborder"><table cellpadding="4" cellspacing="0" summary="" frame="void" border="0" rules="none"><thead align="left"><tr><th colspan="2" valign="top" id="d0e138">Lockable system values</th>
|
||
|
</tr>
|
||
|
</thead>
|
||
|
<tbody><tr><td colspan="2" valign="top" headers="d0e138 "><strong>Auditing system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Activate action auditing</td>
|
||
|
<td valign="top" headers="d0e138 "><p>QAUDLVL<br />
|
||
|
QAUDLVL2</p>
|
||
|
</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Activate object auditing</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUDCTL</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Audit journal error action</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUDENACN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Default auditing for newly created objects</td>
|
||
|
<td valign="top" headers="d0e138 ">QCRTOBJAUD</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Maximum number of journal entries in auxiliary storage</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUDFRCLVL</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Device system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Local controllers and devices</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUTOCFG</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Pass-through devices and Telnet</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUTOVRT</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Action to take when a device error occurs</td>
|
||
|
<td valign="top" headers="d0e138 ">QDEVRCYACN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Remote controllers and devices</td>
|
||
|
<td valign="top" headers="d0e138 ">QAUTORMT</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Jobs system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow jobs to be interrupted</td>
|
||
|
<td valign="top" headers="d0e138 ">QALWJOBITP</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Time-out interval</td>
|
||
|
<td valign="top" headers="d0e138 ">QDSCJOBITV</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">When job reaches time-out</td>
|
||
|
<td valign="top" headers="d0e138 ">QINACTMSGQ</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Password system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Password expiration</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDEXPITV</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Restrict consecutive digits</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDLMTAJC</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Restricted characters</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDLMTCHR</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Restrict repeating characters</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDLMTREP</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Password level</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDLVL</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Maximum password length</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDMAXLEN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Minimum password length</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDMINLEN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Require a new character in each position</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDPOSDIF</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Require at least one digit</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDRQDDGT</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Password reuse cycle</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDRQDDIF</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Password validation program</td>
|
||
|
<td valign="top" headers="d0e138 ">QPWDVLDPGM</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Messages and service system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow remote service of system</td>
|
||
|
<td valign="top" headers="d0e138 ">QRMTSRVATR</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Save and restore system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Verify object signatures on restore</td>
|
||
|
<td valign="top" headers="d0e138 ">QVFYOBJRST</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Convert objects during restore</td>
|
||
|
<td valign="top" headers="d0e138 ">QFRCCVNRST</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow restore of security sensitive objects</td>
|
||
|
<td valign="top" headers="d0e138 ">QALWOBJRST</td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Security system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Security level</td>
|
||
|
<td valign="top" headers="d0e138 ">QSECURITY</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow server security information to be retained</td>
|
||
|
<td valign="top" headers="d0e138 ">QRETSVRSEC</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Users who can work with programs with adopted authority</td>
|
||
|
<td valign="top" headers="d0e138 ">QUSEADPAUT</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Default authority for newly created objects in QSYS.LIB file system</td>
|
||
|
<td valign="top" headers="d0e138 ">QCRTAUT</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow use of shared or mapped memory with write capability</td>
|
||
|
<td valign="top" headers="d0e138 ">QSHRMEMCTL</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Allow these objects in . . .</td>
|
||
|
<td valign="top" headers="d0e138 ">QALWUSRDMN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Use registered exit programs to scan the root (/), QOpenSys, and user-defined
|
||
|
file systems</td>
|
||
|
<td valign="top" headers="d0e138 ">QSCANFS </td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 "> Scan control</td>
|
||
|
<td valign="top" headers="d0e138 ">QSCANFSCTL </td>
|
||
|
</tr>
|
||
|
<tr><td colspan="2" valign="top" headers="d0e138 "><strong>Signon system values</strong></td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Remote signon</td>
|
||
|
<td valign="top" headers="d0e138 ">QRMTSIGN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Display signon information</td>
|
||
|
<td valign="top" headers="d0e138 ">QDSPSGNINF</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Restrict privileged users to specific device session</td>
|
||
|
<td valign="top" headers="d0e138 ">QLMTSECOFR</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Limit each user to one device session</td>
|
||
|
<td valign="top" headers="d0e138 ">QLMTDEVSSN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">Incorrect signon attempts</td>
|
||
|
<td valign="top" headers="d0e138 ">QMAXSIGN</td>
|
||
|
</tr>
|
||
|
<tr><td valign="top" headers="d0e138 ">When maximum is reached</td>
|
||
|
<td valign="top" headers="d0e138 ">QMAXSGNACN</td>
|
||
|
</tr>
|
||
|
</tbody>
|
||
|
</table>
|
||
|
</div>
|
||
|
<p>If you specify <span class="uicontrol">No</span> for <span class="uicontrol">Allow security-related
|
||
|
system values changes</span>, users cannot change security-related system
|
||
|
values. If you need to change a security-related system value, the Allow security-related
|
||
|
system values changes parameter must be changed to <span class="uicontrol">Yes</span> in
|
||
|
SST.</p>
|
||
|
<p>If you specify <span class="uicontrol">Yes</span> for <span class="uicontrol">Allow security-related
|
||
|
system values changes</span>, users with the required authorities can change
|
||
|
security-related system values. Even though the security-related system values
|
||
|
are unlocked, you still need Security administrator (*SECADM) and All object
|
||
|
(*ALLOBJ) special authorities to change them. If you do not want to allow
|
||
|
users to change a security-related system value, the Allow security-related
|
||
|
system values changes parameter must be changed to <span class="uicontrol">No</span> in
|
||
|
SST.</p>
|
||
|
<div class="section"><h4 class="sectiontitle">Where can I find more information?</h4><dl><dt class="dlterm">Lock and unlock security-related system values</dt>
|
||
|
<dd>Find information about how to lock and unlock security-related system
|
||
|
values by using the Start System Service Tools (STRSST) command. If you are
|
||
|
in recovery mode, you need to lock and unlock security-related system values
|
||
|
using Dedicated Service Tools (STRDST).</dd>
|
||
|
<dt class="dlterm">i5/OS™ system
|
||
|
value finder</dt>
|
||
|
<dd>Use this tool to find system values in iSeries Navigator. The i5/OS system
|
||
|
value finder can be particularly helpful if you are trying to make the switch
|
||
|
from the system value terms that were used in the character-based interface
|
||
|
to the terms that are now used in iSeries Navigator.</dd>
|
||
|
<dt class="dlterm">System values categories</dt>
|
||
|
<dd>Find an introduction to all the categories of system values found in iSeries Navigator.</dd>
|
||
|
</dl>
|
||
|
</div>
|
||
|
</div>
|
||
|
<div>
|
||
|
<div class="familylinks">
|
||
|
<div class="parentlink"><strong>Parent topic:</strong> <a href="rzakzconcepts.htm" title="You can learn about specific system value concepts before setting your system values. Select this topic to find descriptions of how to lock and unlock system values and how system values affect a restore operation.">System value concepts</a></div>
|
||
|
</div>
|
||
|
<div class="relconcepts"><strong>Related concepts</strong><br />
|
||
|
<div><a href="rzakzoverviewparent.htm" title="iSeries Navigator groups system values into categories to streamline system value management.">System value categories</a></div>
|
||
|
<div><a href="rzakzqautovrt.htm" title="Sets automatic configuration for pass-through devices and Telnet. (QAUTOVRT)">Devices system values: Pass-through devices and Telnet</a></div>
|
||
|
<div><a href="rzakzqdevrcyacn.htm" title="Sets the action to take when an error occurs. (QDEVRCYACN)">Devices system values: Action to take when a device error occurs on the workstation</a></div>
|
||
|
<div><a href="rzakzqinactmsgq.htm" title="Specifies the action to take when an inactive job reaches time-out. (QINACTMSGQ)">Jobs system values: When a job reaches time-out</a></div>
|
||
|
<div><a href="rzakzqdscjobitv.htm" title="Specifies the time-out interval for disconnected jobs. (QDSCJOBITV)">Jobs system values: Time-out interval for disconnected jobs</a></div>
|
||
|
<div><a href="rzakzqrmtsrvatr.htm" title="Specifies remote service for the system. (QRMTSRVATR)">Messages and service system values: Allow remote service of system</a></div>
|
||
|
<div><a href="rzakzqpwdlvl.htm" title="Sets the password level for the system. (QPWDLVL)">Password system values: Password Level</a></div>
|
||
|
<div><a href="rzakzqpwdminlen.htm" title="Sets the minimum length for a password. (QPWDMINLEN)">Password system values: Minimum password length</a></div>
|
||
|
<div><a href="rzakzqpwdmaxlen.htm" title="Sets the maximum length for a password. (QPWDMAXLEN)">Password system values: Maximum password length</a></div>
|
||
|
<div><a href="rzakzqpwdrqddgt.htm" title="Sets the passwords used on the system to use at least one digit. (QPWDRQDDGT)">Password system values: Require at least one digit</a></div>
|
||
|
<div><a href="rzakzqpwdlmtajc.htm" title="Sets the passwords on the system to restrict consecutive digits. (QPWDLMTAJC)">Password system values: Restrict consecutive digits</a></div>
|
||
|
<div><a href="rzakzqpwdlmtchr.htm" title="Specifies the characters to be restricted. (QPWDLMTCHR)">Password system values: Restricted characters</a></div>
|
||
|
<div><a href="rzakzqpwdlmtrep.htm" title="Specifies whether to restrict repeating characters or not. (QPWDLMTREP)">Password system values: Restrict repeating characters</a></div>
|
||
|
<div><a href="rzakzqpwdposdif.htm" title="Sets the passwords on the system to require a new character in each position. (QPWDPOSDIF)">Password system values: Require a new character in each position</a></div>
|
||
|
<div><a href="rzakzqpwdrqddif.htm" title="Specifies when a password can be used again. (QPWDRQDDIF)">Password system values: Password reuse cycle</a></div>
|
||
|
<div><a href="rzakzqpwdexpitv.htm" title="Specifies when a password expires. (QPWDEXPITV)">Password system values: Password expiration</a></div>
|
||
|
<div><a href="rzakzqpwdvldpgm.htm" title="Specifies whether a user-written program will do additional validation on passwords or not. (QPWDVLDPGM)">Password system values: Password validation program</a></div>
|
||
|
<div><a href="rzakzqfrccvnrst.htm" title="Specifies which objects are converted before being restored. (QFRCCVNRST)">Save and restore system values: Convert objects during restore</a></div>
|
||
|
<div><a href="rzakzqalwobjrst.htm" title="Specifies the objects to be restored and if they can be restored while installing software fixes. (QALWOBJRST)">Save and restore system values: Allow restore of security sensitive objects</a></div>
|
||
|
<div><a href="rzakzqvfyobjrst.htm" title="Specifies whether objects without signatures and/or with signatures that are not valid are restored. (QVFYOBJRST)">Save and restore system values: Verify object signatures during restore</a></div>
|
||
|
<div><a href="rzakzqsecurity.htm" title="Sets the level of security for your system. (QSECURITY)">Security system values: Security level</a></div>
|
||
|
<div><a href="rzakzqretsvrsec.htm" title="Sets server security information to be retained. (QRETSVRSEC)">Security system values: Allow server security information to be retained</a></div>
|
||
|
<div><a href="rzakzquseadpaut.htm" title="Specifies which users can work with programs with adopted authorities. (QUSEADPAUT)">Security system values: Users who can cause programs to use adopted authority from calling programs</a></div>
|
||
|
<div><a href="rzakzqcrtaut.htm" title="Specifies the default authority for objects that do not specify the authority. (QCRTAUT)">Security system values: Default authority for newly created objects in QSYS.LIB file system</a></div>
|
||
|
<div><a href="rzakzqshrmemctl.htm" title="Specifies whether users are allowed to use shared memory or mapped memory stream files or not. (QSHRMEMCTL)">Security system values: Allow use of shared or mapped memory with write capability</a></div>
|
||
|
<div><a href="rzakzqalwusrdmn.htm" title="Specifies where to allow user domain objects that bypass authority checking and cannot be audited. (QALWUSRDMN)">Security system values: Allow these objects in . . .</a></div>
|
||
|
<div><a href="rzakzqscanfs.htm" title="Specifies whether to scan file systems or not. (QSCANFS)">Security system values: Use registered exit programs to scan the root (/), QOpenSys, and user-defined file systems</a></div>
|
||
|
<div><a href="rzakzqscanfsctl.htm" title="Specifies scan control options. (QSCANFSCTL)">Security system values: Scan control</a></div>
|
||
|
<div><a href="rzakzqmaxsign.htm" title="Sets how many incorrect signon attempts a user is allowed. (QMAXSIGN)">Signon system values: Incorrect signon attempts</a></div>
|
||
|
<div><a href="rzakzqmaxsgnacn.htm" title="Specifies the action to take when the maximum number of signon attempts is reached. (QMAXSGNACN)">Signon system values: When maximum is reached</a></div>
|
||
|
<div><a href="rzakzqdspsgninf.htm" title="Specifies if signon information is displayed when signing on to a system. (QDSPSGNINF)">Signon system values: Display signon information</a></div>
|
||
|
<div><a href="rzakzqlmtdevssn.htm" title="Sets the limit for device sessions. (QLMTDEVSSN)">Signon system values: Limit each user to one device session</a></div>
|
||
|
<div><a href="rzakzqlmtsecofr.htm" title="Specifies whether users with all object (*ALLOBJ) and service (*SERVICE) special authority need explicit authority to specific workstations or not. (QLMTSECOFR)">Signon system values: Restrict privileged users to specific device sessions</a></div>
|
||
|
<div><a href="rzakzqrmtsign.htm" title="Specifies information regarding remote signons. (QRMTSIGN)">Signon system values: Remote signon</a></div>
|
||
|
</div>
|
||
|
<div class="reltasks"><strong>Related tasks</strong><br />
|
||
|
<div><a href="rzakzlockunlock.htm" title="To prevent users from changing security-related system values during normal operation, system service tools (SST) and dedicated service tools (DST) provide an option to lock these security values.">Lock and unlock security-related system values</a></div>
|
||
|
</div>
|
||
|
<div class="relinfo"><strong>Related information</strong><br />
|
||
|
<div><a href="rzakzfinder.htm">System value finder</a></div>
|
||
|
</div>
|
||
|
</div>
|
||
|
</body>
|
||
|
</html>
|