Security

Web Query uses an administrative user to govern access to the database and its associated database objects. This username and password is specified by the wqUserId and wqUserPass parameter. These parameters are required to access the DB2 Web Query Tool Catalog Objects. As these are shared objects, they should only be accessible to this User ID. If you do not want to use the DB2 Web Query Tool Catalog Objects, you may omit these parameters.

The wqUserId and wqUserPass parameters are stored in the was.conf file. It is recommended that this file be secured using normal file permissions. Additionally, this username and password should be synchronized across all database locations to which Web Query will connect.

In addition, the RRSAF (rather than CAF) connection facility is required. This must be set up properly with the JDBC driver to allow authentication.