Hi Bob,
we also had problem in this area, getting a lot of RACF messages to operlog during logon.
In the source code for ARSUSECZ after comments
* Issue a RACROUTE AUTH request to determine if the user has Read
* access to the Folder.
we added MSGSUPP=NO line to following macro
RACROUTE REQUEST=AUTH, Validate access authority +
CLASS=WKSAFCLS, SAF Resource Class area +
ATTR=READ, Authority requested +
ENTITYX=(WKENTBUF,NONE), Resource Profile Name area +
ACEE=(R2), ACEE pointer in R2 +
WORKA=WKRACWKA, SAF work area +
RELEASE=2608, OS/390 2.8 level +
MSGRTRN=NO, Do not return messages +
MSGSUPP=YES, suppress WTO -pk +
MF=(E,WKRACFPL) [/font][/font]