limiting to only 1 active client session for 1 user at a time

Previous topic - Next topic

Helle V. Justesen

hi

we run the windows client v. 10.5.0.5. and server on z/OS using RACF as access control

this might not be a specific ondemand client issue - but I have got a pentest finding saying it should not be possible to have more than one active client session with the same user at a time - does anyone knows how to do that?  right now I can start several clients and log on to all of them with the same user

br
Helle Justesen

Justin Derrick

Sounds like you'd need a security exit for that.  But the security exits only allow you to approve or deny a login, so I don't think you could use it to kill the old session while allowing the new session to proceed.  Looks like this might be a good candidate for an enhancement request.

-JD.
Call:  +1-866-533-7742  or  eMail:  jd@justinderrick.com
IBM CMOD Wiki:  https://CMOD.wiki/
FREE IBM CMOD Webinars:  https://CMOD.Training/
IBM CMOD Professional Services: https://CMOD.cloud

Interests: #AIX #Linux #Multiplatforms #DB2 #TSM #SP #Performance #Security #Audits #Customizing #Availability #HA #DR