© Copyright IBM Corp. 2007. All rights reserved. 315
Appendix B. RACF options that control
the use of security labels
This appendix provides detailed descriptions of the RACF settings that control a
multilevel security system. Much of this appendix is based on the information in
z/OS Planning for Multilevel Security and the Common Criteria, GA22-7509-05.
You can use the RACF SETROPTS command to control how security labels are
used on your system. Different SETROPTS options control different aspects of
security label function. We describe these options in the following sections:
COMPATMODE and NOCOMPATMODE
MLACTIVE and NOMLACTIVE
MLFSOBJ
MLIPCOBJ
MLNAMES and NOMLNAMES
MLQUIET and NOMLQUIET
MLS and NOMLS
MLSTABLE and NOMLSTABLE
SECLABELAUDIT and NOSECLABELAUDIT
SECLABELCONTROL and NOSECLABELCONTROL
SECLBYSYSTEM and NOSECLBYSYSTEM
B

Get Securing DB2 and Implementing MLS on z/OS now with O’Reilly online learning.

O’Reilly members experience live online training, plus books, videos, and digital content from 200+ publishers.