The listserv bounced the first version of this as a duplicate. Do they have a bug?

On 11/12/2013 2:20 PM, CM Poncelet wrote:
There will always be 'risks' with APF'd libraries in the wrong hands.
It's up to the security administrator to grant MVS SETPROG authority
only to trusted developers.

SETPROG seems like overkill. Many moons ago I modified a CBT contribution from Don Higgins named LOADZAP (?). As an option it will authorize the STEPLIB's DEB and then invoke the specified module authorized if AC=1. This is much less of an exposure, and more easily controlled.

Gerhard Postpischil
Bradford, Vermont

----------------------------------------------------------------------
For IBM-MAIN subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO IBM-MAIN

Reply via email to