BNA network commands are used to configure and maintain the BNA network. They are used to control those aspects of BNA security not directly associated with the USERDATAFILE. Limit access to these commands to trusted users only.
Access to BNA commands is regulated by two security provisions: network user authorization and port file application group access.
-
The network user authorization uses an authorization list to control access to the BNA commands that a usercode can execute. Each entry in the list consists of a usercode, an optional host name, and the command category the usercode is authorized to use.
-
The application group list controls the opening of port files that make use of the APPLICATIONGROUP attribute. This attribute indicates the user community that is authorized to open the port. The port can communicate only with other port files that have the same value of APPLICATIONGROUP.

