A user who wants to work with a UTM database application signs on using the client-specific sign-on process for openUTM. The same applies to sign-off.
If a sign-on service is used for signing on, the following must be noted:
If the user signs on via a terminal or terminal emulation, database calls are not permitted in the first part of the SIGNON service for security reasons, unless this is explicitly permitted at UTM generation with the KDCDEF statement SIGNON, ...RESTRICTED=NO.
In the second part of the sign-on service, the authorization profile for the user is read from the database, provided the database supports this option. This means that a universal DB/DC authorization concept can be implemented.
More details on sign-on and sign-off can be found in the chapter "Working with a UTM application".