Top Secret

 View Only
  • 1.  Control Options 32 and 69

    Posted May 19, 2020 09:25 AM
    Hi ,

    Control option 32 intends to enable USS logging . Our HFSSEC Control option is set to OFF . In this case , would setting OPTIONS(32) in Top Secret control options be of any affect ? we monitor USS usage via SMF 231 records and till now it was sufficient .
    Does anyone know whether OPTIONS(69) exist ? if it is , what is it intended for ?

        Thanks ,

               Asher


  • 2.  RE: Control Options 32 and 69

    Broadcom Employee
    Posted May 19, 2020 12:22 PM
    Asher,,

    OPTION(32) causes USS events to also get logged to the AUDIT TRACKING FILE aside from the SMF231 records.

    The AUDIT tracking file was not originally designed to hold USS events, so the USS event information in the Audit tracking file is not as extensive as the USS events logged to SMF 231 records.

    If the USS event information is not sufficient in the Audit tracking file, run a TSSOERPT which will have more details about the event.

    If you are already monitoring the SMF231, logging the USS events to the Audit Tracking File would probably not benefit you. The extra logging to the Audit Tracking File will cause the file to fill up a lot faster. And if you dont use the information in the Audit Tracking File anyway, you are just creating more overhead on your systems.

    There is no OPTION(69).

    Please let me know if there are any questions.

    Regards,

    Joseph Porto - Broadcom Level 1 Support



  • 3.  RE: Control Options 32 and 69

    Posted May 20, 2020 01:15 AM

    Good morning Joseph ,

     

    Thank you for your swift reply .

    Although USS logging might cause additional overhead of recording , my preliminary thaughts were whether setting OPTIONS(32) is worthy even if we do not use HFSSEC(ON) and still rely on native Unix security and protection .

     

         Best regards ,

     

            Asher