The concern is not how the agent authorizations are set ? The question raised is, when we activate the command server in MQ a malicious user or app posing as mqm can get access via the command queue.
...
I am deploying a Tivoli Monitoring for MQ (Omegamon XE for Messaging) infrastructure in my organization. Currently as part of the security policy the Command Servers on the Queue Mangers have been tur ...