[Search for users] [Overall Top Noters] [List of all Conferences] [Download this site]

Conference iosg::all-in-1_v30

Title:*OLD* ALL-IN-1 (tm) Support Conference
Notice:Closed - See Note 4331.l to move to IOSG::ALL-IN-1
Moderator:IOSG::PYE
Created:Thu Jan 30 1992
Last Modified:Tue Jan 23 1996
Last Successful Update:Fri Jun 06 1997
Number of topics:4343
Total number of notes:18308

3275.0. "OA$LIB FILE PROTECTIONS" by WELCLU::SAUNDERS (Sue Saunders) Wed Sep 15 1993 11:16

    I have been told by internal security that files in the OA$LIB area
    should not have w:re on them. Apparently there was a problem with the
    upgrade from 2.2 to 2.3 which set them all to w:rwed. Somewhere this is
    documented, and was part of a post install task to reset file
    protections. Does anyone have any information on this, or is able to
    tell me what the file protections should be.
    
    Obviously ALL-IN-1 will fall in a heap without any world access, so I
    guess the change needs to be selected files only.
    
    Any help would be very gratefully recieved as I suspect I am about to
    fail an audit on this one!
    
    Thanks 
    
    Sue
T.RTitleUserPersonal
Name
DateLines
3275.1Make them all W:RE to start with...IOSG::PYEGraham - ALL-IN-1 Sorcerer's ApprenticeWed Sep 15 1993 14:3712
    I hadn't heard of this problem with the V2.3 upgrade, however...
    
    If you set them all to W:RE, then it will keep working. What you might,
    just *POSSIBLY*, allow, is for someone who isn't a system manager to
    try and execute one of the SM scripts or COMs. But they'll almost
    certainly soon fail if the user doesn't have privileges.
    
    Finding another system to compare is probably the best bet! Do a
    DIR/SECURITY of OA$LIB into a file and hack it into a command
    procedure.
    
    Graham