Sponsored Content
Top Forums Shell Programming and Scripting Other user should not read the file but can execute Post 302952935 by Scrutinizer on Monday 24th of August 2015 11:52:14 AM
Old 08-24-2015
@drl, I don't think ACL's are going to be of help here, seeing as a user needs to be able to read a script in order to be able execute it as himself.
 

10 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

File read & execute problem

Hi folks, Need your help. I am writing a KSH script to read a few commands from a file & execute. I am using the following code to read the file line by line & excute each command. When I am printing each line I see it is printing properly but while excuting, the particular "ps" command... (5 Replies)
Discussion started by: tipsy
5 Replies

2. Shell Programming and Scripting

root user command in shell script execute as normal user

Hi All I have written one shell script for GPRS route add is given below named GPRSRouteSet.sh URL="www.google.com" VBURL="10.5.2.211" echo "Setting route for $URL for GPRS" URL_Address=`nslookup $URL|grep Address:|grep -v "#"|awk -F " " '{print $2}'|head -1` echo "Executing ... (3 Replies)
Discussion started by: mnmonu
3 Replies

3. Shell Programming and Scripting

How to execute commands read from another file?

Please help with this simple example. I can not figure out how to do it. A file named “job” contains only this one line:var=5I need a script to read the job file and execute it as a command. This is my attempt (it does not work):#!/bin/sh exec < job echo "var = $var"output should read “var = 5”... (5 Replies)
Discussion started by: wolfv
5 Replies

4. Linux

Restrict User to only execute the file.

Hi Gurus , I hope you are doing great . Other than owner of the file , OTHERS and GROUP should be restricted from read or write a file created by the owner. OTHERS and GROUP should be only allowed to execute the file. Thanks in advance. (8 Replies)
Discussion started by: palanisvr
8 Replies

5. Shell Programming and Scripting

How to read a file line by line and store it in a variable to execute a program ?

Hello, I am quite new in shell scripting and I would like to write a little scritp to run a program on some parameters files. all my parameters files are in the same directory, so pick them up with ls *.para >>dirafter that I have a dir file like that: param1.para param2.para etc... I... (2 Replies)
Discussion started by: shadok
2 Replies

6. Shell Programming and Scripting

Help with Bash piped while-read and a read user input at the same time

Hi I am new to writing script and want to use a Bash Piped while-read and read from user input. if something happens on server.log then do while loop or if something happend on user input then do while loop. Pseudocode something like: tail -n 3 -f server.log | while read serverline || read... (8 Replies)
Discussion started by: MyMorris
8 Replies

7. Shell Programming and Scripting

How to read the user inputted file name?

hello, I have prepared a script ------------------------------------------------ #!/bin/sh cat test.txt| sed '1d' | sed '$d' > /tmp/tmp1.txt while read line do typeset -i count=`echo $line | tr ' ' '}' | wc -c` finalcount=`expr $count - 1` echo $finalcount done <... (12 Replies)
Discussion started by: rac
12 Replies

8. Shell Programming and Scripting

Read user input, Encrypt the data and write to file

Hi, can some one help me how to encrypt and decrypt a file. AIM: reade user input, encrypt it and save it to file. while decryption read the encrypted file decrypt it and save the output in some variable. Example: consider we have Credentials.txt file with content username: password... (5 Replies)
Discussion started by: saichand1985
5 Replies

9. Shell Programming and Scripting

Read from file and execute the read command

Hi, I am facing issues with the below: I have a lookup file say lookup.lkp.This lookup.lkp file contains strings delimited by comma(,). Now i want to read this command from file and execute it. So my code below is : Contents in the lookup.lkp file is : c_e,m,a,`cd $BOX | ls cef_*|tail... (7 Replies)
Discussion started by: vital_parsley
7 Replies

10. Shell Programming and Scripting

Process to read a new file entry and execute a command

I need to develop a process/daemon which will constantly monitor a file for new entry and execute a command. for eg, there is a file /var/log/inotify.log When a new entry like below gets appeneded to this file, execute the command as follows. /home/user/public_html/bad.php|CREATE ... (2 Replies)
Discussion started by: anil510
2 Replies
setacl(1)						      General Commands Manual							 setacl(1)

NAME
setacl - modify access control lists (ACLs) for files (JFS File Systems only) SYNOPSIS
acl_entries file... acl_entries acl_entries]... file... acl_file file... DESCRIPTION
For each file specified, will either replace its entire ACL, including the default ACL on a directory, or it will add, modify, or delete one or more ACL entries, including default entries on directories. The option will set the ACL to the entries specified on the command line. The option will set the ACL to the entries contained within the file acl_file. The option will delete one or more specified entries from the file's ACL. The option will add or modify one or more speci- fied ACL entries. One of the options or must be specified. If or are specified, other options are invalid. The and options may be combined, and multiple and options may be specified. For the and options, acl_entries are one or more comma separated ACL entries selected from the following list. For the option, acl_file must contain ACL entries, one to a line, selected from the same list. Default entries may only be specified for directories. indicates that characters must be typed as specified, brackets denote optional characters, and italicized characters are to be specified by the user. Choices, of which exactly one must be selected, are separated by vertical bars. operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm operm|perm For the option, acl_entries are one or more comma separated ACL entries without permissions, selected from the following list. Note that the entries for file owner, owning group, and others may not be deleted. uid gid uid gid In the above lists, the user specifies the following: perm is a permissions string composed of the characters (read), (write), and (execute), each of which may appear at most one time, in any order. The character may be specified as a placeholder. operm is the octal representation of the above permissions, with 7 representing all permissions, or and 0 representing no permissions, or uid is a login name or user ID. gid is a group name or group ID. The options have the following meanings: Normally, recalculates the group class entry so as to ensure that permissions granted in the additional ACL entries will actually be granted, and the value specified in the entry is ignored. If the option is specified, the recalculation is not performed, and the value specified in the entry is used. Set a file's ACL. All old ACL entries are removed, and replaced with the newly specified ACL. There must be exactly one entry specified for the owner of the file, exactly one entry specified for the owning group of the file, and exactly one entry specified. If the option is not specified there must also be exactly one entry specified. There may be additional ACL entries and additional ACL entries specified, but there may not be duplicate additional ACL entries with the same uid, or duplicate additional ACL entries with the same gid. If the file is a directory, default ACL entries may be specified. There may be at most one entry for the owner of the file, at most one entry for the owning group of the file, at most one entry for the file group class, and at most one entry for other users. There may be additional entries and additional entries specified, but there may not be duplicate additional entries with the same uid, or duplicate additional entries with the same gid. never recalculates the entry, regardless of whether or not the option was specified. An entry with no permissions will result in the specified uid or gid being denied access to the file. The entries need not be in order. They will be sorted by the command before being applied to the file. Add one or more new ACL entries to the file, and/or change one or more existing ACL entries on the file. If an entry already exists for a specified uid or gid, the specified permissions will replace the current permissions. If an entry does not exist for the specified uid or gid, an entry will be created. Delete one or more existing ACL entries from the file. The entries for the file owner, the owning group, and others may not be deleted from the ACL. Note that deleting an entry does not necessarily have the same effect as removing all permissions from the entry. Specifically, delet- ing an entry for a specific user would cause that user's permissions to be determined by the entry (or the owning entry, if the user is in that group). Set a file's ACL with the ACL entries contained in the file named acl_file. The same constraints on specified entries hold as with the option. The entries are not required to be in any specific order in the file specified as acl_file. The character in acl_file may be used to indicate a comment. All characters, starting with the until the end of the line, will be ignored. Note that if the acl_file has been created as the output of the command, any effective permissions, which will have been written with a preceding will also be ignored. When the command is used, it may result in changes to the file permission bits. When the ACL entry for the file owner is changed, the file owner permission bits will be modified. When the ACL entry is changed, the file other permission bits will be modified. When additional ACL entries and/or any ACL entries are set or modified, the file group permission bits will be modified to reflect the maximum permissions allowed by the additional user entries and all the group entries. If an ACL contains no additional or additional entries, the permissions in the entry for the object owning group and the entry must be the same. Therefore, if the option is specified and results in no additional entries and no additional entries, the entry permissions will be set equal to the permissions of the owning group entry. This happens regardless of whether or not the option was specified. A directory may contain ACL entries. If a file is created in a directory which contains ACL entries, the entries will be added to the newly created file. Note that the default permissions specified for the file owner, file owning group, and others, will be constrained by the umask and the mode specified in the file creation call. If an ACL contains no additional or additional entries and a entry is specified for the object owning group, then a entry must also be specified, and the permissions in the entry for the object owning group and the permissions for the entry must be the same. This command may be executed on a file system that does not support ACLs, to set the permissions for the three base entries for the file owner, file owning group, and others. Additional entries and entries will not be allowed in this case. EXAMPLES
To add one ACL entry to file giving user read permission only, type: If an entry for user already exists, this command will set the permissions in that entry to To replace the entire ACL for file adding entries for users and allowing read/write access, an entry for the file owner allowing all access, an entry for the file group allowing read access only, and an entry for others disallowing all access, type: Note that following this command, the file permission bits would be set to Even though the file owning group has only read permission, the maximum permissions available to all additional ACL entries, and all ACL entries, are read and write, since the two additional entries both specify these permissions. To set the same ACL on file as in the above example, using the option, type: with file edited to contain: Because the option was not specified, no entry was needed. If a entry had been present it would have been ignored. FILES
user IDs group IDs SEE ALSO
acl(2), aclsort(3C), chmod(1), getacl(1), ls(1). setacl(1)
All times are GMT -4. The time now is 05:03 PM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy