Your Browser is not longer supported

Please use Google Chrome, Mozilla Firefox or Microsoft Edge to view the page correctly
Loading...

{{viewport.spaceProperty.prod}}

Tables of auditable information on object-related events (1)

&pagelevel(3)&pagelevel

The tables in the following show a list of the events for each object, with the associated information fields and their type of output:

  • M = mandatory (is always output)

  • O = optional (may be output)

  • E = *EXTENDED field (is only output if LOGGING-QUANTITY=*EXTENDED was set with the /MODIFY-SAT-PRESELECTION command)

  • - = is not output

The other table accompanying each of these table shows which value may appear in each field.

The field names which can also be monitored via the alarm function of SAT or for which a filter condition can be defined are identified in the second column (al/fil) by means of an asterisk (*) or a plus sign (+). Fields marked with a plus (+) can only be checked for their existence (VALUE=*ALL). The asterisk (*) mark means that the contents of the field can also be checked. If the data type for SAT-ALARM and SAT-FILTER differs from the data type for SATUT, the data type for SAT-ALARM and SAT-FILTER is specified in parentheses ().

The identifier in the third column can be used to edit the SAT information in the audit records when using exit routine 110. The identifiers are specified in hexadecimal notation.

The following fields of the objects are always assigned values in every SATLOG record:

  • user ID and TSN of the subject (user-id, tsn)

  • logging time (timestp)

  • abbreviated name of the event (evt) and result of the event (res)
    The event is always shown in the tables, and the result (S = success, F = failure) only if its contents determine what is logged in the variable part of the SATLOG record.

Depending on its existence, but independently of the object, the following fields are always assigned values:

  • The auditid field. This contains:

    • the personal user ID if access by means of personal identification was defined for a user ID.

    If there is no personal user ID:

    • the first eight characters of the Kerberos principal, if the authentication at $DIALOG was performed via Kerberos

  • group ID (groupid)

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

auditid

*

0001

Audit subject identification
type: x-string 2..32

evt


00F3

Event-type id
type: c-string 1..3

groupid

*

0002

Group subject identification (user-group)
type: c-string 1..8

res


00F5

Event result
keywords: F/S

timestp


00F1

Time (date and time of the record creation)
Format: yyyy-mm-dd/hh:mm:ss

tsn


00F4

TSN subject
type: c-string 1..4

user-id


00F6

user subject identification
type: c-string 1..8 (user-id)

These fields are therefore not mentioned again in the object-specific tables.

Notes

Under certain circumstances there may not be a relevant cause task with events of the BCAM object. The contents of the user-id and tsn fields are meaningless in this case. The string ’(BCAM)’ is entered in the user-id field.

There is no relevant cause task with the IPSEC event “Security policy infringement during data transfer“ (IPV). The contents of the user-id and tsn fields are meaningless in this case. The string ’(IPSEC)’ is entered in the user-id field.

In the case of fields relatingto the SAT objects POSIX-FILE-and-Directory, POSIX-CHILD-Process, POSIX-PROCESS and POSIX-SYSTEM-Resources, question marks (i.e. ‘??’) may be displayed as the field value in the SATLOG log if the input by the user is incorrect.

If the user-id field contains the string ’(OPR)’, the cause of the event is a system task of operating.

For the fields eltvers (version of a library element) and ldvers (version of a loaded module) it is important to note that the largest possible version is not – like, for example, by LMS – converted into the character @, and instead retains its internal coding X'FF'. Therefore, for a query in SATUT, irrespective of the specified character set, the
character ß or ~ has to be used.

Object ADAM (only up to BS2000 OSD/XC V11.0)

Event

evt

SAT information

device

devtype

Add device management

ADO

M

M

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

device

*

003C

Device name
type: c-string 1..8

devtype

*

003D

Device type
type: x-string 2..4 (ALARM/FILTER: x-string 4..4)

Object ANY

Event

evt

SAT information

databth

datahex

datatxt

ldata

subcod

ANY event (system exit)
Any event

ANY

O

O

O

E

O

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

databth

*

0062

data type hexa or string
type: x-string 2..510

datahex

*

0061

data type hexa
type: x-string 2..510

datatxt

*

0060

data type text
type: c-string 1..510

ldata

*

0203

General hexa fields
type: x-string 2..64000

subcod

*

005F

subcode
type: c-string 1..4

Object APPLICATION

Event

evt

res

SAT information




applnam

hostnam

partnam

pthtnam

parttyp

applid

connid

rc

Open application

DON

S

M

O

-

-

-

M

-

M

F

M

O

-

-

-

O

-

M

Close application

DCL

S/F

O

-

-

-

-

O

-

O

Connect application

DCN

S

M

O

M

O

M

M

M

M

F

M

O

M

O

M

O

O

M

Abort application

DDS

S/F

M

O

M

O

-

O

O

O

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

applid

*

0035

Application identifier
type: x-string 2..8 (ALARM/FILTER: x-string 8..8 )

applnam

*

0025

Application name
type: c-string 1..8

connid

*

0036

Connection identifier
type: x-string 2..8 (ALARM/FILTER: x-string 8..8 )

hostnam

*

0029

Name of the host
type: c-string 1..8

partnam

*

0026

Partner name
type: c-string 1..8

parttyp

*

0028

Type of the partner
keywords: APPLICATION/TERMINAL

pthtnam

*

0027

Name of the partner host
type: c-string 1..8

rc

*

003B

fdbk return code
type: x-string 2..8 (ALARM/FILTER: x-string 8..8 )

Object BCAM

Event

evt

res

SAT information

a
p
p
l
i
d

a
p
p
l
i
s
o1

a
p
p
l
n
a
m1

a
p
p
l
s
o
c1

c
o
n
n
i
d

h
o
s
t
n
a
m

i
p
v
4
o
w
n

i
p
v
4
p
t
n

i
p
v
6
o
w
n

i
p
v
6
p
t
n

i
t
s
l
o
w
n

i
t
s
l
p
t
n

p
a
r
t
i
s
o2

p
a
r
t
n
a
m2

p
a
r
t
s
o
c2

p
o
r
t
o
w
n

p
o
r
t
p
t
n

p
t
h
t
n
a
m

rc

Open TSAP

BAO

S

M

O

O

O

-

O

-

-

-

-

O

-

-

-

-

O

-

-

M

F

M

O

O

O

-

O

-

-

-

-

O

-

-

-

-

O

-

-

M

Close TSAP

BAC

S

M

O

O

O

-

O

-

-

-

-

O

-

-

-

-

O

-

-

M

F

M

-

-

-

-

-

-

-

-

-

O

-

-

-

-

O

-

-

M

Open connection

BCN

S

M

-

-

-

M

-

O

O

O

O

O

O

O

O

O

O

O

O

M

F

M

-

-

-

-

-

O

O

O

O

O

O

O

O

O

O

O

O

M

Close connection

BDS

S

M

-

-

-

M

-

-

-

-

-

O

-

-

-

-

-

-

-

M

F

M

-

-

-

M

-

-

-

-

-

O

-

-

-

-

-

-

-

M

1The appliso, applnam and applsoc fields are mutually exclusive

2The partiso, partnam and partsoc fields are mutually exclusive

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

applid

*

0035

Application identifier
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)

appliso

*

0146

ISO name of the application
type: x-string 156..156 (ALARM/FILTER: x-string 2..156)

applnam

*

0025

Application name
type: c-string 1..8

applsoc

*

0147

SOCKET name of the application
type: x-string 156..156 (ALARM/FILTER: x-string 2..156)

connid

*

0036

Connection identifier
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)

hostnam

*

0029

Name of the host
type: c-string 1..8

ipv4own

*

014A

Own IP address (format V4)
type: c-string 7..15

ipv4ptn

*

014B

Partner IP address (format V4)
type: c-string 7..15

ipv6own

*

014C

Own IP address (format V6)
type: c-string 39..39

ipv6ptn

*

014D

Partner IP address (format V6)
type: c-string 39..39

itslown

*

0151

Own ISO-TSEL
type: x-string 64..64 (ALARM/FILTER: x-string 2..64)

itslptn

*

0152

Partner ISO-TSEL
type: x-string 64..64 (ALARM/FILTER: x-string 2..64)

partiso

*

0148

ISO name of the partner
type: x-string 156..156 (ALARM/FILTER: x-string 2..156)

partnam

*

0026

Partner name
type: c-string 1..8

partsoc

*

0149

SOCKET name of the partner
type: x-string 156..156 (ALARM/FILTER: x-string 2..156)

portown

*

014E

Own port number
type: integer 0..65535

portptn

*

014F

Partner port number
type: integer 0..65535

pthtnam

*

0027

Name of the partner host
type: c-string 1..8

rc

*

003B

fdbk return code
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)

Object CATALOG

Event

evt

res

SAT information

catid

share

catacce

resjoin

newcat

Import catalog

CIP

S/F

M

M

M

M

-

Export catalog

CEP

S/F

M

-

-

-

-

Check catalog

CKR

S

M

-

-

-

O

F

O

-

-

-

O

Convert catalog

CVR

S

M

-

-

-

M

F

O

-

-

-

O

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

catacce

*

0024

Catalog access status
keywords: MASTER/SLAVE

catid

*

0022

Catalog identifier
type: c-string 1..4

newcat

*

00EC

new or merged catalog identifier
type: c-string 1..4

resjoin

*

0045

user-catalog lost or not
keywords: YES/NO

share

*

0023

Catalog shareability
keywords: SHARED/EXCLUSIVE

Object CONSLOG

Event

evt

SAT information

cltype

clrecpt

clsende

clmsgid

cltext

clorig

CONSLOG entry

CLG1

CLG1

M

-

M

M

M

CLG2

CLG2

M

M

-

M

M

CLG3

CLG3

-

M

-

M

M

1'System message requiring a response' to 'Additional information request', see below
2'Response message' and 'Additional information response'
3'Operator command'

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

clmsgid


0096

Message id. in Conslog record
type: c-string 1..7

clorig


0098

origin of the Conslog record
keywords: TPR/TU

clrecpt


0094

Recipient
type: c-string 1..4

clsende


0095

Sender
type: c-string 1..4

cltext


0097

Rest of the CONSLOG record
type: c-string 1..252

cltype


0093

Type of the CONSLOG record
type: c-string 1..39. Possible values :
'System message requiring a response' (msg type = ?)
'System message not requiring a response' (msg type = %)
'Error message' (msg type = *)
'Emergency message' (msg type = E)
'Command end message' (msg type = !)
'Command result' (msg type = +)
'Additional information request' (msg type = &)
'Response message' (response type = R)
'Additional information response' (response type = :)
'Operator command' (command type : /)

Object COOWNER PROTECTION

Event

evt

SAT information

guard

nwrlnam

objnam

parcra

parcrm

rulenam

Add co-owner protection rule

CRA

M

-

-

E

-

M

Modify co-owner protection rule

CRM

M

O

-

-

E

M

Display co-owner authorization rule

CRQ

-

-

M

-

-

-

Remove co-owner protection rule

CRR

M

-

-

-

-

M

Display co-owner protection rule

CRS

M

-

-

-

-

-

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

guard

*

009F

Guard name
type: c-string 1..40

nwrlnam

*

00C1

New name of protection rule
type: c-string 1..12

objname

*

00C2

Name of object
type: c-string 1..54

parcra

+

0215

Parameter list for add coowner prot rule
type: x-string 2..384

parcrm

+

0216

Parameter list for modify coowner prot rule
type: x-string 2..384

rulenam

*

00C0

Name of protection rule
type: c-string 1..20

Object DATA SPACES

Event

evt

res

SAT information

acckey

alet

comread

dsname

mempriv

scope

spid

Create DATA SPACE

DSB

S

M

-

M

M

M

M

M

F

M

-

M

M

M

M

-

Connect with DATA SPACE

DSC

S

M

M

M

M

M

M

M

F

M

-

M

M

M

M

M

Release connection with DATA SPACE

DSD

S/F

-

M

-

O

-

O

O

Delete DATA SPACE

DSE

S/F

-

-

-

M

-

M

M

Modify/reset DATA SPACE

DSM

S/F

-

-

-

M

-

M

M

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

acckey

*

0034

TU access key
type: x-string 2..2

alet

*

009E

access list entry token
type: x-string 2..8 (ALARM/FILTER: x-string 8..8 )

comread

*

009D

read access protection
type: keywords: NO/YES

dsname

*

009B

data space name
type: c-string 1..54

mempriv

*

0021

processed privilege identification
keywords: YES/NO

scope

*

001D

Memory pool scope
keywords: LOCAL/GROUP/GLOBAL/USER-GROUP/
UNDEFINED/SYSTEM

spid

*

009C

Space identifier
type: x-string 2..16 (ALARM/FILTER: x-string 16..16)

Object DEFAULT PROTECTION

Event

evt

SAT information

g
u
a
r
d

n
w
r
l
n
a
m

o
b
j
n
a
m

p
a
r

d
a
a

p
a
r
d
a
m

p
a
r

d
r
a

p
a
r

d
r
m

p
a
r

d
u
a

p
a
r
d
u
r

r
u
l
e
n
a
m

Define default values for protection attributes

DAA

M

-

-

E

-

-

-

-

-

-

Modify default values for protection attributes

DAM

M

-

-

-

E

-

-

-

-

-

Display default values for protection attributes

DAS

M

-

-

-

-

-

-

-

-

-

Add default protection rule

DRA

M

-

-

-

-

E

-

-

-

M

Modify default protection rule

DRM

M

O

-

-

-

-

E

-

-

M

Display default protection attributes for object

DRQ

-

-

M

-

-

-

-

-

-

-

Remove default protection rule

DRR

M

-

-

-

-

-

-

-

-

M

Display default protection rule

DRS

M

-

-

-

-

-

-

-

-

-

Add user ID for object path

DUA

M

-

-

-

-

-

-

E

-

-

Remove user ID for object path

DUR

M

-

-

-

-

-

-

-

E

-

Display user ID for object path

DUS

M

-

-

-

-

-

-

-

-

-

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

guard

*

009F

Guard name
type: c-string 1..40

nwrlnam

*

00C1

New name of protection rule
type: c-string 1..12

objname

*

00C2

Name of object
type: c-string 1..54

pardaa

+

020F

Parameter list for add default prot attributes
type: x-string 2..312

pardam

+

0210

Parameter list for modify default prot attributes
type: x-string 2..352

pardra

+

0213

Parameter list for add default prot rule
type: x-string 2..424

pardrm

+

0214

Parameter list for modify default prot rule
type: x-string 2..424

pardua

+

0211

Parameter list for add default prot uid
type: x-string 2..952

pardur

+

0212

Parameter list for remove default prot uid
type: x-string 2..952

rulenam

*

00C0

Name of protection rule
type: c-string 1..20

Object EVENTING-ITEM

Event

evt

res

SAT information

evitnam

scope

activate eventing

EEE

S

M

M

F

-

-

deactivate eventing

EDE

S

M

M

F

-

-

activate serialization

EES

S

M

M

F

-

-

deactivate serialization

EDS

S

M

M

F

-

-

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

evitnam

*

002F

Eventing/serialization item name
type: c-string 1..64 (ALARM/FILTER: c-string 64..64)

scope

*

001D

Eventing/serialization item scope
keywords: LOCAL/GROUP/GLOBAL/USER-GROUP/
UNDEFINED/SYSTEM

Object FILE

Event

evt

SAT information

access

audit
at

catid

dmsrc

fil
name

fn

patrn

fpar
cat

new
file

pswd
par

sop
act

vsn1

Create file

FCD

M1

M

-

O

M

-

-

-

-

-

-

Read file

FRD

M2

M

-

O

M

-

-

-

-

-

-

Execute file (open exec)

FED

M

M

-

O

M

-

-

-

-

-

-

Modify file

FMD

M3

M

-

O

M

-

-

-

-

-

-

Close file

FCL

-

M

-

O

M

-

-

-

-

-

-

Delete file

FDD

-

M

-

O

M

-

-

-

-

-

-

Rename file with ARCHIVE

FAR

-

M

-

O

M5

-

-

M5

-

-

-

Rename file

FRN

-

M

-

O

M

-

-

M

-

-

-

Define protection attributes

FCS

-

M

-

O

M

-

E

-

-

-

-

Modify protection attributes

FMS

-

M

-

O

M

-

E

-

-

-

-

Delete protection attributes

FDS

-

M

-

O

M

-

-

-

-

-

-

Read protection attributes

FRS

-

M

O

-

O4

O4

-

-

M

-

-

Import protection attributes

FIS

-

M

-

O

M

-

-

-

-

-

-

Export protection attributes

FES

-

M

-

O

M

-

-

-

-

-

-

Convert file into decrypted file

FDC

-

M

-

O

M

-

-

-

-

-

-

Convert file into encrypted file

FEC

-

M

-

O

M

-

-

-

-

-

-

Move file extents
(SPACEOPT)

FME

-

-

-

-

M

-

-

-

-

M

O

Select object for reorganization
(SPACEOPT)

FSO

-

-

O

-

O

-

-

-

-

-

O

1Only OUTIN / OUTPUT permissible
2Only INPUT / REVERSE permissible
3Only UPDATE / EXTEND / INOUT / SINOUT permissible
4Mutually exclusive
5Specification of cat-id is contingent upon the ARCHIVE function


Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

access

*

0006

Open file mode
keywords: INPUT/REVERSE/OUTPUT/EXTEND/UPDATE/INOUT/
OUTIN/SINOUT/INPUT-EXECUTE/UNSPECIFIED

auditat

*

0005

Audit attribute
keywords: SUCCESS/FAILURE/ALL/NONE

catid

*

0022

Catalog identifier
type: c-string 1..4

dmsrc

*

0004

DMS return code
type: x-string 2..4 (ALARM/FILTER: x-string 4..4 )

filname

*

0003

File name
type: c-string 1..54 (ALARM/FILTER: filename)

fnpatrn

*

0063

filename pattern
type: c-string 1..80

fparcat

+

0208

Parameter List File
Type: x-string 2..12000

newfile

*

0007

New file name
type: c-string 1..54 (ALARM/FILTER: filename)

pswdpar

*

0064

password parameter
keywords: YES/NO

sopact

*

0065

SPACEOPT action code
keywords: CLEAR-VOL/REDUCE-EXT/
START-JOB

vsn1

*

0039

Volume serial number
type: c-string 1..6


Object FITC (Fast Intertask Communication)

Event

evt

SAT information

guard

port

tsn-inf

Define port access

POA

M

M

O

Define port

POB

M

M

O

Connect to port

POC

M

M

O

Disconnect from port

POD

M

M

O

Release port

POE

M

M

O

Release port access

POR

M

M

O

Implicit exchange with port

POX

M

M

O

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

guard

*

009F

Guard name
type: c-string 1..40

port

*

00B0

port name
type: c-string 1..54

tsn-inf

*

0010

TSN object
type: c-string 1..4 (ALARM/FILTER: c-string 4..4)

Object GROUP

Event

evt

SAT information

admin

catid

gparadu

gparmdu

obj-gid

upper

Add

GAD

M

M

E

-

M

M

Modify

GMD

O

M

-

E

M

O

Remove

GRM

M

M

-

-

M

M

Show

GSH

-

M

-

-

M

-

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

admin

*

002B

(Group)administrator identification
type: c-string 1..8 (user-id)

catid

*

0022

Catalog identifier
type: c-string 1..4

gparadu

+

0209

Parameter list for add group
type: x-string 2..5000

gparmdu

+

0210

Parameter list for modify group
type: x-string 2..10000

obj-gid

*

002A

Group identificator as object
type: c-string 1..8

upper

*

002C

Upper group identification
type: c-string 1..8

Object GUARDS

Event

evt

SAT information

catid

gparmod

gparrem

guard

nwguard

Create GUARD

GUB

-

-

-

M

-

Copy GUARD

GUC

-

-

-

M

M

Delete GUARD

GUD

-

-

-

M

-

Change guards catalog

GUF

M

-

-

-

-

Repair guards catalog

GUR

M

-

-

-

-

Modify attributes

GUM

-

-

-

M

O

Display attributes

GUS

-

-

-

M

-

Define access conditions

GAA

-

E

-

M

-

Modify access conditions

GAM

-

E

-

M

-

Delete access conditions

GAR

-

-

E

M

-

Display access conditions

GAS

-

-

-

M

-

Interrogate access conditions

GAQ

-

-

-

M

-

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

catid

*

0022

Catalog identificator
type: c-string 1..4

gparmod

+

0201

Modify parameter list
type: x-string 2..1860

gparrem

+

0202

delete parameter list
type: x-string 2..432

guard

*

009F

Guard name
type: c-string 1..40

nwguard

*

00AB

new guard name
type: c-string 1..24

Object IPSEC

Event

evt

res

SAT information

ipv4own1

ipv4ptn2

ipv6own1

ipv6ptn2

rc

Load IPSEC security database
Security policy infringement
during data transfer

ILD

S

-

-

-

-

-

F

-

-

-

-

-

IPV

F3

O

O

O

-O

M

1The ipv4own and ipv6own fields are mutually exclusive

2The ipv4ptn and ipv6ptn fields are mutually exclusive

3The result is always F with the IPV event

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

ipv4own

*

014A

Own IP address (format V4)
type: c-string 7..15

ipv4ptn

*

014B

Partner IP address (format V4)
type: c-string 7..15

ipv6own

*

014C

Own IP address (format V6)
type: c-string 39..39

ipv6ptn

*

014D

Partner IP address (format V6)
type: c-string 39..39

rc

*

003B

fdbk return code
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)
The following return codes can be evaluated:
X'00400106' Illegal value for SPI (Security Parameter Index)
X'00400206' Invalid signature
X'00400306' Cryptobox error message: decryption failed
X'00400406' Signature/encryption required
X'00400506' 1. Security association required for input but not available
X'00400606' 2. Security association required for input but not available
X'00400706' Invalid security protocol header

Object JOB

Event

evt

res

SAT information

c
a
l
e
n
d

e
n
d
r
e
a
s

e
n
d
t
y
p
e

f
l
u
s
h

i
n
t
i
m
e

j
o
b
t
y
p
e

o
b
j
u
i
d

p
r
o
c
n
a
m

r
e
j
r
e
a
s

r
e
p
e
a
t

r
e
r
u
n

s
t
a
t
i
o
n

t
s
n
i
n
f

Initiate batch
job or subtask

JBE

S

M

-

-

M

-

M

M

-

-

M

M

-

M

F

-

-

-

-

-

-

O

-

M

-

-

-

-

Abort job

JCN

S

-

O

-

-

-

-

-

-

-

-

-

-

M

F

-

O

-

-

-

-

-

-

-

-

-

-

M

Initiate dialog
or RLOGIN

JDE

S

-

-

-

-

-

-

-

M

-

-

-

M

-

F

-

-

-

-

-

-

O

M

M

-

-

M

-

End job

JED

S

-

M

M

-

-

-

-

-

-

-

-

-

-

F

-

-

-

-

-

-

-

-

-

-

-

-

-

Initialize batchjob
or subtask

JIN

S

-

-

-

-

M

-

-

-

-

-

-

-

M

F

-

-

-

-

-

-

-

-

-

-

-

-

-

Modify batch job

JM

S

M

-

-

M

-

-

-

-

-

M

M

-

M

D

F

-

-

-

-

-

-

-

-

-

-

-

-

-

Generate POSIX task

JFK

S

-

-

-

-

-

-

-

-

-

-

-

-

M

F

-

-

-

-

-

-

-

-

-

-

-

-

O

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

calend

*

00F0

calendar date for job-start
keywords: YES/NO

endreas

*

0017

End reason
keywords: ABEND/CANCEL/LOGOFF/MOVE-JOBS/SHUTDOWN

endtype

*

0016

Job termination status
keywords: NORMAL/ABNORMAL

flush

*

0014

Job removal
keywords: YES/NO

intime

*

001A

Time of the job spoolin
type: c-string 1..14 (ALARM/FILTER: c-string 14..14)

jobtype

*

0012

Job type
keywords:ENTR = ENTER job, TASK = subtask, MOVE-JOBS = import
job description

obj-uid

*

0011

user identificator as object
type: c-string 1..8

procnam

*

0019

Processor name
type: c-string 1..8 (ALARM/FILTER: c-string 8..8)

rejreas

*

001B

Reject reason
keywords: INV-AUTHORIZATION/SYSTEM-ERROR/
CMD-PARAM-ERROR/SATURATION/NO-ERROR

repeat

*

0015

Job start period
keywords: YES/NO

rerun

*

0013

Job reinitiation
keywords: YES/NO

station

*

0018

Terminal name
type: c-string 1..8 (ALARM/FILTER: c-string 8..8)

tsn-inf

*

0010

TSN object
type: c-string 1..4 (ALARM/FILTER: c-string 4..4)

Object JOB VARIABLES

Event

evt

SAT information

jvname

jvpatrn

newjv

jvsrc

Rename with ARCHIVE

JVA

M

-

M

O

Create prot. attributes

JVC

M

-

-

O

Delete prot. attributes

JVD

M

-

-

O

Modify prot. attributes

JVM

M

-

-

O

Read data

JVG

M

-

-

O

Write data

JVS

M

-

-

O

Query JV

JVQ

O*

O*

-

O

Rename JV

JVR

M

-

M

O

* Mutually exclusive

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

jvname

*

005B

Job variable-name
type: c-string 1..54 (ALARM/FILTER: filename)

jvpatrn

*

005E

Job variable-pattern
type: c-string 1..80

jvsrc

*

005D

Return-code of job variables
x-string 2..4 (ALARM/FILTER: x-string 4..4)

newjv

*

005C

New job variable name
type: c-string 1..54 (ALARM/FILTER: filename)

Object KEY

Event

evt

SAT information

catid

enctype

kvno

obj-uid

parkrbp

princcl

princsv

Add KERBEROS Encryption Type

KEA

M

M

M

-

-

-

M

Delete KERBEROS Encryption Type

KED

M

M

M

-

-

-

M

Add KERBEROS Principal

KPA

M

-

-

-

E

-

M

Delete KERBEROS Principal

KPD

M

-

-

-

-

-

M

Modify KERBEROS Principal

KPM

M

-

-

-

E

-

M

KERBEROS Ticket Check

KTC1

-

M

M

O

-

M

M

Abortive attempt at a crypto
password check after exceeding
the maximum number of
abortive attempts

KXM2

-

-

-

-

-

-

-

1With the KTC event the data field user-id has no meaning.
With dialog logon the field is not assigned values. In the case of access via an application such as OMNIS or UTM it contains the caller’s user ID, but not the destination user ID.

2With the KXM event the result 'S' cannot occur; the result is thus always 'F'.


Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

catid

*

0022

Catalog identificator
type: c-string 1..4

enctype

*

0174

KERBEROS encryption type
type: integer 0..231-1

kvno

*

0175

KERBEROS key version number
type: integer 0..231-1

obj-uid

*

0011

User identificator as object
type: c-string 1..8

parkrbp

*

0219

Parameter list for add/modify KERBEROS principal
type: x-string 2..280

princcl

*

0172

KERBEROS client principal
type: c-string 1..1800 with-low (ALARM/FILTER: c-string 1..255 with-low)

princsv

*

0173

KERBEROS server principal
type: c-string 1..1800 with-low (ALARM/FILTER: c-string 1..255 with-low)


Object MEMORY-POOL

Event

evt

res

SAT information

mempool

scope

memclas

mempriv

enamprc

shortid

acckey

Open (ENAMP)

MEN

S

M

M

M

M

M

M

M

F

M

O

O

O

M

-

O

Close (DISMP)

MDS

S/F

M

M

-

-

-

-

-

Release (RELMP)

MRL

S/F

M

M

-

-

-

-

-

Make readable for TU (with CSTMP in TPR)

MRD

S/F

M

M

-

-

-

-

-

Modify readability with CSTMP in TU

MAC

S/F

M

M

-

-

-

-

-

Field name

al/fil

exit

Meaning and values of information:SDF data type or keywords

acckey

*

0034

TU access key
type: x-string 2..2

enamprc

*

001E

ENAMP return code
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)

memclas

*

0020

memory class of the memory pool
keywords: CLASS5/CLASS6

mempool

*

001C

memory pool name
type: c-string 1..54

mempriv

*

0021

Privilege of the mem. pool pages
keywords: YES/NO

scope

*

001D

Memory pool scope
keywords: LOCAL/GROUP/GLOBAL/USER-GROUP/
UNDEFINED/SYSTEM

shortid

*

001F

Short memory pool name
type: x-string 2..8 (ALARM/FILTER: x-string 8..8)

Object OPERATOR-ROLES

Event

evt

SAT information

catid

obj-uid

oprole

routcod

Add routing code

ORA

M

-

M

M

Create operator role

ORB

M

-

M

-

Assign operator role

ORC

M

M

M

-

Remove operator role (from user record)

ORD

M

M

M

-

Delete operator role

ORE

M

-

M

-

Withdraw routing code

ORR

M

-

M

M

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

catid

*

0022

Catalog identificator
type: c-string 1..4

obj-uid

*

0011

User identificator as object
type: c-string 1..8

oprole

*

00AE

operator role
type: c-string 1..8

routcod

*

00AD

routing code
type: c-string 1..3

Object PLAM members (elements)

Event

evt

res

SAT information

fil

name

elt
name

elt
vers

elt
type

nwel
nam

nwel
ver

nwel
typ

plam

rc

keep

opt

auditat

Create library element

LCE

S

M

M

M

M

O

O

O

-

-

M

F

M

O

O

O

O

O

O

M

-

M

Modify library element

LM

S

M

M

M

M

-

-

-

-

-

M

E

F

M

O

O

O

-

-

-

M

-

M

Read library element

LRE

S

M

M

M

M

-

-

-

-

-

M

F

M

O

O

O

-

-

-

M

-

M

Execute library element

LEE

S

M

M

M

M

-

-

-

-

-

M

F

M

O

O

O

-

-

-

M

-

M

Close library element

LCL

S

M

M

M

M

-

-

-

-

M

M

F

M

O

O

O

-

-

-

M

M

M

Delete library element

LDE

S

M

M

M

M

-

-

-

-

-

M

F

M

O

O

O

-

-

-

M

-

M

Rename library element

LRN

S

M

M

M

M

M

M

M

-

-

M

F

M

O

O

O

M

M

M

M

-

M

Create security attributes

LCS

S

M

O

O

O

-

-

-

-

-

M

F

M

O

O

O

-

-

-

M

-

M

Delete security attributes

LDS

S

M

O

O

O

-

-

-

-

-

M

F

M

O

O

O

-

-

-

M

-

M

Modify security attributes

LM

S

M

O

O

O

-

-

-

-

-

M

S

F

M

O

O

O

-

-

-

M

-

M

Field name

al/fil

exit

Meaning and values of information:
SDF data type or keywords

auditat

*

0005

Audit attribute
keywords: SUCCESS/FAILURE/ALL/NONE

eltname

*

0008

Element name
type: c-string 1..64

elttype

*

000A

Element type
type: c-string 1..8

eltvers

*

0009

Element version
type: c-string 1..24

filname

*

0003

File name
type: c-string 1..54 (ALARM/FILTER: filename)

keepopt

*

0047

Keep option
keywords: YES/NO

nwelnam

*

0042

New/base element name
type: c-string 1..64

nweltyp

*

0044

New/base element type
type: c-string 1..8

nwelver

*

0043

New/base element version
type: c-string 1..24

plamrc

*

0046

PLAM return code
type: c-string 1..13 (ALARM/FILTER: x-string 16..16).
Format: zzzz/xxxxxxxx
zzzz = primary code (decimal)
xxxxxxxx= secondary code (hexadecimal)
/HELP PLAzzzz can be used to call up information on the corresponding
return code