Grant an ACL that only gives that user permission to deploy stuff.
There's a single command that does this. The documentation on that command is very clear about how to do what you want to do. _________________ I am *not* the model of the modern major general.
Full control
Edit all execution group properties. v Start and stop execution groups. v All execution group Deploy permission rights. v All execution group View permission rights.
Deploy
Deploy execution group configuration. v Start and stop assigned message flows. v Start and stop trace. v All execution group View permission rights.
View
View execution group configuration and managed subcomponents. v Implicit View access to parent broker and topology.
mqsicreateaclentry CM -g GROUPA -x D -b BROKER
mqsicreateaclentry CM -u USERA -x D -b BROKER
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum