The Security Jrn ChgUserProf attribute group contains attributes that you can use to monitor create, change, or restore operation to the user profile.
ALLOBJ Indicates whether or not all object authority has been changed. All object authority allows users to work with system resources, such as applying program temporary fixes (PTFs). The valid values include:
*YES |
ALLOBJ special authority has been granted or revoked. |
*NO |
The authority has no changed. |
Command Type The type of command used. The valid values include:
CRT |
Create User Profile (CRTUSRPRF) command |
CHG |
Change User Profile (CHGUSRPRF) command |
RST |
Restore User Profile (RSTUSRPRF) command |
DST |
Change Dedicated Service Tools Password (CHGDSTPWD) command |
JOBCTL Indicates whether or not job control authority has been changed. Job control authority allows user to work with jobs, such as changing, holding, and cancelling. The valid values include:
*YES |
JOBCTL special authority has been granted or revoked. |
*NO |
The authority has not changed. |
ORIGINNODE The host name for the monitored system. The valid value is an alphanumeric string with a maximum length of 64 characters.
Password Changed Indicates whether or not the password has changed for the user profile. The valid values include:
*YES |
Indicates the password for the user profile has changed. |
*NO |
Indicates there has been no change to the password for the user profile. |
Password Expired Indicates whether or not a password has expired. The valid values include:
*YES |
The password is expired. |
*NO |
The password did not expire. |
SAVSYS Indicates whether or not save system authority has been changed. Save system authority allows users to save, restore, and free storage for system objects. The valid values include:
*YES |
SAVSYS special authority has been granted or revoked. |
*NO |
The authority has not changed. |
SECADM Indicates whether or not security administrator authority has been changed. A security administrator can create, change, or delete user profiles. The valid values include:
*YES |
SECADM special authority has been granted or revoked. |
*NO |
The authority has not changed. |
SERVICE Indicates whether or not service authority has been changed. Service authority allows users to perform service functions, such as working with the problem log. The valid values include:
*YES |
SERVICE special authority has been granted or revoked. |
*NO |
The authority has not changed. |
SPLCTL Indicates whether or not spool control authority has been changed. Spool control authority allows users to perform all spool-related functions. The valid values include:
*YES |
SPLCTL special authority has been granted or revoked. |
*NO |
The authority has not changed. |
USER The name of the user profile that was changed. The valid value is an alphanumeric string with a maximum of 10 characters.