This course is not scheduled. Inquire about Onsite training at your facility.
Overview
| Course code | ES885 | Skill level | Intermediate |
|---|---|---|---|
| Duration | 3.5 days | Delivery type | Classroom
(Hands-on labs) |
| Course type | Public or Private on-site | ||
| Public price | USD $4,065.00 plus tax | ||
Are you already familiar with basic to intermediate Resource Access Control Facility (RACF) concepts and need to know more? Attend this course to learn how to implement advanced facilities of the RACF component of the z/OS Security Server. You will benefit from this course if your installation uses or needs to implement any of the following: RACF Remote Sharing Facility (RRSF), security with z/OS UNIX Systems Services, DB2 security with RACF, RACF in a basic or parallel Sysplex, Network Job Entry (NJE) security controls, security for z/OS operator commands, program control, and backup and recovery of the RACF data base. Classroom lecture is reinforced with hands-on lab exercises which will help you select and implement those functions appropriate for your installation.
Hands-On Labs
Nine labs are included to address the RACF Remote Sharing Facility, operator commands, and security with z/OS UNIX.
Training Path
This course is part of an IBM Training Path. Taking this course in the recommended sequence allows you to maximize the benefits from your education.
http://www.ibm.com/services/learning/ites.wss/us/en?pageType=page&contentID=a0000627
View this course in other countries
Training Paths that reference this course are:
Audience
This is an intermediate course for Security and RACF support individuals who implement or administer RACF.
Skills taught
- Configure RACF RRSF to synchronize passwords for users with multiple user ids
- Establish a RRSF environment to keep multiple RACF data bases synchronized
- Implement security for z/OS UNIX Systems Services
- Effectively apply advanced techniques to implement RACF program control
- Develop a plan to backup and recover the RACF database
- Describe the security issues with Network Job Entry (NJE)
- Explore the security available for z/OS operator commands
- Understand how RACF can be used to replace native DB2 security
- Set up RACF to use the coupling facility in a Parallel Sysplex
- Implement Sysplex Communication
Course outline
RACF Remote Sharing Facility (RRSF)
- implement the RACF Remote Sharing Facility (RRSF) to provide benefits
- in the areas of performance, availability, system management, and usability
- complete four online lab exercises to set up a RRSF network, provide password synchronization, command direction, and keep multiple RACF data bases in sync
RACF Sysplex Support
- describe the steps necessary to implement RACF Sysplex Communication and RACF Sysplex Data Sharing.
RACF security for DB2
- explain how the External Security Module is used to call RACF for DB2 authorization requests
- describe the RACF profiles used to control DB2 objects
- implement DB2 Administrator and System Authorities
Command and Console Security
- state the benefits available with the command security facilities
- complete the online lab exercise to protect operator commands
RACF support for z/OS UNIX (UNIX System Services)
- explain the authorization checking process for accessing a file or directory
- understand the auditing options for z/OS UNIX System Services
- Set up permissions for controlling access to a file or directory including Access Control Lists (ACLs)
- develop a plan to implement security for z/OS UNIX System Services, and control advanced UNIX applications
- complete three online lab exercises to become familiar with adding z/OS UNIX users, creating HFS data sets, setting permission bits with the OpenMVS ISPF shell and UNIX command prompt, and set Access Control Lists (ACLs)
Controlling Network Job Entry (NJE)
- manage the receipt and transmission of jobs and SYSOUT across an NJE network
Backup and Recovery of the RACF database
- describe possible outage scenarios and recovery strategies
Program Control
- explain the functions that RACF program control provides and implement those necessary in your environment
