User Profile Facility Security

The platform server user profile facility is secured in two ways.

See the following two ways to secure the user profile facility:
  • Typical users can add, delete, or list user profile records only for themselves.
  • Only administrators can add user profile records for other user IDs. A platform server user profile administrator is a user that has RACF or ACF2 or Top Secret control privilege for the facility defined by the BOSSID parameter. If the BOSSID parameter is set to ANY, then all users can add, delete, or list user profile records for any user ID in the system.
Note: To give a platform server profile administrator rights to a user, you must give them CONTROL access for RACF and CA-Top Secret, and DELETE access for CA-ACF2.
For more information on defining the facility class for the user profiles, see The RACF Security Interface, The CA-ACF2 Security Interface, and The Top Secret Security Interface.