Secure Guidelines - HP T6553 D45 Reference Manual

File utility program
Table of Contents

Advertisement

FUP Commands
A standard user can secure a file (by using security-num) to allow only super ID
(255,255) access (%7777). After doing this, the user does not have access to the
file and must ask the super ID to change the security of the file.
Note. The SECURE command does not change the file security if you omit
security-string and security-num.
CLEARONPURGE
physically deletes all data in fileset-list from the disk (by overwriting the file
space with blank data) when the file is purged (or deallocated) with the
DEALLOCATE command. When you purge a file that does not have
CLEARONPURGE set, the disk space is logically deallocated, and the data is not
physically destroyed.
CLEARONPURGE does not affect the PURGEDATA command, but it does affect
the DEALLOCATE command. If the CLEARONPURGE option is specified in a
SECURE command for a file, a subsequent DEALLOCATE command physically
clears the data from the deallocated extents of the file.
PARTONLY
changes security only for the designated partition (for partitioned files). If you omit
PARTONLY, security for every partition of the file is affected if the primary partition
of the file is included in fileset-list. If the primary partition is not included in
fileset-list, only the referenced file partitions are affected.
PROGID
is the program ID for program files only. When the program is run, the PROGID
option sets the process accessor ID to the ID of the owner of the program file. This
option is not valid if you are on a remote system.

SECURE Guidelines

A Super.Super user is allowed to set the PROGID and CLEARONPURGE
security attributes of a Safeguard protected file if the underlying persistent
protection record does not explicitly DENY ownership permission to
Super.Super.
A non-Super.Super user is allowed to set the PROGID and CLEARONPURGE
security attributes of a Safeguard protected file under the following conditions:
1. The requestor (non-Super.Super user) is the owner of the file as recorded in
the disk label.
2. The READ (R) permission must be provided to the user while adding to
safeguard protection using Safeguard command interpreter (SAFECOM)
otherwise user receives FileSystem Error 48(Security Violation).
File Utility Program (FUP) Reference Manual—523323-014
2-168
SECURE Guidelines

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

G08H01H02

Table of Contents