Modifying a User for Incoming FTP/REXEC Logons

To modify information for a user or group for incoming FTP/REXEC logons, enter 1 in the Opt field for that user or group on the Work with FTP/REXEC Logon Security screen (STRFW > 11 > 1) as shown in Setting Additional Controls for Incoming IPv6 FTP REXEC Logons.

The Modify FTP/REXEC Logon User screen appears:

                         ​ Modify FTP/REXEC Logon User​                           
                                                                                
 Type information, press Enter.                                                ​ 
  ​
 User  . . . . . . . . .​  RLTOOLS           ​                                  
                                    ​
 1=*ALLOW​                                   
                                    ​
 2=*REJECT ​                                 
  ​
 IP Address     ​  Subnet Mask    ​  3=*ALTLOGON​     ​ Text​                      
  ​ *ALL             0.0.0.0            ​ 2   ​                                    
  ​
 1.1.1.182        255.255.255.255    ​ 1   ​                                    
  ​
                                     ​     ​                                    
  ​
                                     ​     ​                                    
  ​
                                     ​     ​                                    
  ​
                                     ​     ​                                    
                                                                  ​
      More...​ 
                                                                                
 For *ALTLOGON (alternative logon):​                                             
  ​
 Validation password . .​  *SYS                Password, *NOCHK, *SYS, *PGM  ​  
  ​
 Alt User  . . . . . . .​  *SAME              ​ Name, *SAME, F4 for list      ​  
  ​
 Alt Password  . . . . .​  *SAME              ​ Password, *SAME, *BYPASS, *PGM​  
  ​
 Alt Current library . .​  *USRPRF            ​ Library, *USRPRF              ​  
                                                                                
 F3=Exit​  ​ F4=Prompt​  ​ F10=Additional parameters​  ​ F11=Alt.view​  ​ F12=Cancel ​   
                                                                                
                                                                                

The read-only User field shows the name of the user or group.

The body of the screen is made up of lines that can refer to different IP address ranges. To modify the information for the user, you can edit or clear existing lines or add new ones.

Possible field values include:

IP Address

The IP address that begins the range.

Subnet mask

The subnet mask for the address range. For a list of possible subnet masks, showing the number of addresses that the range would include, press the F4 key.

1=*ALLOW 2=*REJECT 3=*ALTLOGON

How Firewall responds to requests by the user for incoming FTP/REXEC logons from this IP range. Possible values include:

  • 1: Accept logon requests
  • 2: Reject logon requests
  • 3: Require an ALTLOGON connection to connect, as set below.

Text

A free-form text description of the rule.

If you are using *ALTLOGON, as indicated in IBM documentation, the user takes on a different identity, including that user's authority settings. Set the section of the screen labeled For*ALTLOGON (alternative logon):​ to appropriate values.