LESSON 8.  SECURITY AND LOGIN

Publication Date:  16 February 1996
System Version:  GCCS 2.1/Update 4
Web Page Created:  4 April 1996

Setup.  None.

OBJECTIVE.  Without the use of references, identify three possible breaches of WWMCCS or JOPES security.

OBJECTIVE.  Given a WWMCCS environment, login to the mainframe and access JOPES.

CONNECTING AND ACCESSING TS3
Step Activity Anticipated Result
1 At the DOS prompt, type "ts3log", press <RETURN>. TS3 LOGON Menu (Fig. 8-1) displays.


Figure 8-1.  TS3 LOGON Menu

Note:  If you have an AT&T model 1910 with the remote control option turned on, then you can use option D to establish the connection.  If your model 1910 remote control option is turned off or you do not have a 1910, then you must dial manually.

CONNECTING AND ACCESSING TS3
2 Type "d", press <RETURN>. TS3 LOGON Menu (Fig. 8-1) redisplays.
3 Type "p", press <RETURN>. Several informational messages (see note) will appear, followed by the default datanet Logon screen (Fig. 8-2).

Note:  If any step takes more than one minute, the LOGON script will terminate.  The LOGON script is designed to automatically correct most connection problems.  The LOGON script may have to run twice to actually correct a problem; therefore, always try at least twice to connect before assuming there is a problem requiring TS3 local node System Administrator assistance.


Figure 8-2.  Default Datanet Logon Screen

CONNECTING AND ACCESSING TS3
4 At the CORRESPONDENT prompt, type "tss", press <RETURN>; at the SESSION CONTROL ID prompt, type "mcc1", press <RETURN>; at the PERSON ID (PID) prompt, type {your assigned PER}, press <RETURN>; at the PROJECT prompt, type {your assigned PJ}, press <RETURN>; at the PERSON ID CODE (PIC) prompt, type {your assigned PIC}; at the SCC prompt, type {your desired data classification level}; at the CAVEAT SCC prompt, type {your default report classification level}, press <RETURN>; at the $IDENT prompt, type <SPACE><RETURN>. The timeshare prompt (*) (Fig. 8-3) displays.

Note:  The SESSION CONTROL ID prompt identifies either the primary (NMCC2) host or the backup (ANMC2) host site.  The entry to connect to the primary host site is MCC1, while the entry to connect to the backup host site is ANM2.


Figure 8-3.  Timeshare Prompt Screen

CONNECTING AND ACCESSING JOPES
Step Activity Anticipated Result
1 At the TSS prompt, type "jopes", press <RETURN>. CF-001, JOPES MASTER MENU (Fig. 8-4), displays with message "VERIFYING YOUR AUTHORIZATIONS--PLEASE BE PATIENT."

Figure 8-4.  JOPES Master Menu


REVIEW USERID PERMISSIONS
Step Activity Anticipated Result
1 Type "g" in SUBSYSTEM CODE, "e" in DATABASE, and press <RETURN>. CF-008, USERID PERMISSIONS (Fig. 8-5), displays.

Figure 8-5.  USERID Permissions

Note:  TCC permissions should not be required in the TS3 system.  They are used to control carrier information which should not be entered.  Execution of Top Secret plans should occur after the plan is downgraded to a minimum of Secret and transferred to GCCS JOPES for execution.


READ PERMISSIONS
General Specific
CMDLIB
JDS
LIBRARY
IDSQDIR4DATAQRY
TUCHA
TUDET
GEOFILE
APORTS
CHSTR
PORTS
ASSETS

Table 8-1.  Read Permissions

Note:  Review the permissions and controlling office list below (Table 8-2).  It lists the permission and the appropriate person/office responsible for assisting/granting it.


PERMISSIONS AND CONTROLLING OFFICE
Permission Person/Office
PERSON ID, Project Code, and PIC WASSO
TS3 Systems Permissions (JOPS files, JDS Software) FM/TDBM
Functional Permissions for Real World and Exercise Databases FM
OPLAN Series Permissions FM
Close Hold Plan Authorization FM
File Space FM
Tapes FM

Table 8-2.  Permissions and Controlling Office

Note:  If you need additional JOPES help, contact USTRANSCOM J3-JTO at DSN 576-8042 or commercial (618) 256-8042.

REVIEW OPLAN LIST
Step Activity Anticipated Result
1 Type "x" in SUBSYSTEM and press <RETURN>. CF-001, JOPES MASTER MENU (Fig. 8-4), redisplays.
2 Type "list" in OPLAN and press <RETURN>. CF-010, JOPES OPLAN MENU (Fig. 8-6), displays.

Figure 8-6.  JOPES OPLAN Menu

Note:  Close hold and limited access OPLANs will display only if the OPLAN creator has granted permissions based on Project Code or terminal.

Note:  Most plans should be either Top Secret, close hold, or SPECAT because those are the plans being developed on the TS3 system.

Note:  None should be declared because execution is supposed to occur in GCCS JOPES after downgrade to a minimum of Secret.

Note:  No records should have an entry in the SSF field because execution occurs in GCCS JOPES.

Note:  The following steps assume that you have been in both the JDS and JOPS applications.  If you have not been in both applications, then some steps are not required or will not be displayed.

DEMONSTRATE LOGOUT PROCEDURES
Step Activity Anticipated Result
1 On the FRG Menu, enter "x" in EXIT or "*finish" on the Command Line and press <RETURN>. CF-001, JOPES MASTER MENU (Fig. 8-4), redisplays.

DEMONSTRATE LOGOUT PROCEDURES
2 Type "z" in FUNCTION CODE or "*z" on the Command Line.  Press <RETURN>. MONITOR RUN LOG screen displays.

DEMONSTRATE LOGOUT PROCEDURES
3 Type "end" and press <RETURN>. JOPES TERMINATED screen displays.

DEMONSTRATE LOGOUT PROCEDURES
4 At the * prompt, type "bye" and press <RETURN>. "Session 1 terminated by the remote TCP host, Reset received" message displays.

DEMONSTRATE LOGOUT PROCEDURES
5 Press <ALT-9>. G-LINK Screen displays.
6 Press <ALT-Q>. "Are you Sure" message displays.
7 Type "y". DOS prompt displays.

Note:  <ALT-9> only works with the STU AT&T model 1910 with Remote Control enabled.  This executes the HANGUP.SCR G-LINK script.  If using a different type of STU or Remote Control is not enabled, then hangup the STU to break the secure connection.