Vulnerability AIX server (GROUPS/USERS) and SAP Systems ?


 
Thread Tools Search this Thread
Operating Systems AIX Vulnerability AIX server (GROUPS/USERS) and SAP Systems ?
Prev   Next
# 1  
Old 09-29-2009
Error Vulnerability AIX server (GROUPS/USERS) and SAP Systems ?

I hope you can understand me, although my english is not so good.
I have a problem. I have installed 4 SAP Systems with different releases on the same server (AIX). Each SAP system has got its own operating system user through the installation. But all users belong to the group SAPSYS. So in other SAP users to inventory the existing look or read files. Here's my question: How do I implement it that the group SAPSYS will not be deleted but the user can't read or look of any other system-dependent files? It should be borne in mind that I may not use any other right structure for the files because the SAP system would not run otherwise. How can I add the group SAPSYS for all SAP Systems, without that the user of the same group can read other Systemfiles? May sound silly but it's a real problem.Smilie
Thanks in advance for your answers.


Regards
Muhammet
 
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. AIX

Change password for many users on an AIX server

Hi I want to change password for around 100 users on an aix server. I have the list of those 100 users with me. instead of doing # passwd username for all the 100 users one by one, can you please help with a script through which we can change the password for all the 100 users in a... (2 Replies)
Discussion started by: newtoaixos
2 Replies

2. UNIX for Advanced & Expert Users

Creating groups and users

Hi Could anyone please suggest how we can check in Linux if a user or a group name is already existing? In case of a user the command should also be able to specify the user with a given directory and shell. We can of course check this using a grep command but since that is just a pattern match,... (12 Replies)
Discussion started by: Dorothy
12 Replies

3. UNIX for Dummies Questions & Answers

List users and groups

Hi I am new to unix so hopefully someone can help. I need to list all the users I have in my unix enviroment (AIX) and the groups (primary and secondary) they belong to. Can anyone help? Many thanks in advance (2 Replies)
Discussion started by: m3y
2 Replies

4. UNIX for Advanced & Expert Users

quick remote health check SAP systems from UNIX commandline

Hi folks Howto do quick remote health check for SAP systems on UNIX commandline? To see if a SAP system is down or in maintenace mode (no login). I am searching something like "tnsping"/Oracle for SAP systems. (2 Replies)
Discussion started by: slashdotweenie
2 Replies

5. Shell Programming and Scripting

AIX os level 6.1 for list of users and groups

I have a AIX server o/s 5.3.0.0 and a few at o/s 6.1.0.0 The issue I am haveing is running this on the server with o/s of 5.3 works good but not on the o/s of 6.1 any help out here?? #!/usr/bin/ksh user -a pgrp groups ALL |awk '{print $1}' > a1 lsuser -a pgrp groups ALL |awk '{print $2}'|cut... (4 Replies)
Discussion started by: Jcraft
4 Replies

6. Solaris

/usr/sap/psu file systems full.

Hi Ive been facing a prob today in SAP which is been installed in solaris .the prob is one of my file systems tat is /usr/sap/psu is gettin full.i chkd the file named core which gets generated so i was asked to delete that file after doing tat my file systems space was 90%,but the prob is that... (0 Replies)
Discussion started by: madanmeer
0 Replies

7. Solaris

Removing users from groups

How do I remove a user from a group? I'm using the usermod command but its not working. I have a user "abc" who is a member of the groups root and other. I'm trying to remove him from the group "other" (using CLI) which is his secondary group but it's not working. How do I do this? Is there any... (11 Replies)
Discussion started by: the_red_dove
11 Replies

8. UNIX for Dummies Questions & Answers

users and groups

hi eveyone i've recently requested my unix admin to create a userid for 2 groups. He created the id and i can see it by grep "id" /etc/group. But when i login with that id into unix and try to cd that group it says permission denied. something like cd /groupname -- permission denied Can my admin... (1 Reply)
Discussion started by: sammet
1 Replies

9. Linux

listing users and groups

RH 7.2 I'm trying to list the users & groups on my machine. I found the lsuser & lsgroup commands but no associated man pages. I typed: lsuser I get --> Valid options are: -a So I typed: lsuser -a I get --> Valid options are: groups, home So I typed: lsuser -a groups I get -->... (2 Replies)
Discussion started by: jalburger
2 Replies

10. Cybersecurity

Users and groups

Hi, Is it possible that one user belongs to many groups, or the relation of user/group is 1/1?. Thanks Ramón (2 Replies)
Discussion started by: rsanz
2 Replies
Login or Register to Ask a Question
SAP(7)								   Miscellaneous							    SAP(7)

NAME
sap - Service Access Point specification DESCRIPTION
The text2sap and sap2text functions use the format described in this man page. Because all standard ATM tools on Linux use those functions to convert to or from the textual representation of SAP specifications, they expect them in the same format too. The SAP is divided into two parts: the broadband high layer information (BHLI) and the broadband low layer information (BLLI). A SAP can contain one, both, or none of them. In the latter case, the SAP is usually considered as a wildcard SAP, i.e. a SAP that is compatible with any other SAP. Each part begins with its name (bhli or blli), followed by a colon and a (non-empty) list of attributes, which are of the form attribute=value. Some attributes have sub-attributes, which follow them. Everything that isn't separated by a colon or an equal sign is separated by a comma. Values which are a number of bytes are specified as the corresponding sequence of pairs of hex digits. The sequence can be optionally pre- fixed with 0x. Values with are integers in a given range can be specified in decimal (no prefix), octal (0 prefix), and hexadecimal (0x prefix). The following, mutually exclusive attributes are allowed in the bhli part (see the corresponding ATM Forum and ITU documents for the seman- tics): iso=1-8 bytes ISO user=1-8 bytes User-specific hlp=4 bytes High layer profile. Note that this attribute only exists on UNI 3.0. text2sap only recognizes it if your system is configured to accept UNI 3.0 message formats. oui=3 bytes,id=4 bytes Vendor-specific application identifier The structure of the bhli part is more complex. It distinguishes three layers, l1, l2, and l3, of which the first one is presently unsup- ported. For layer two, the following (mutually exclusive) possibilities exist: l2=iso1745 Basic mode ISO 1745 l2=q291 ITU-T Q.291 (Rec. I.441) l2=lapb Extended LAPB, half-duplex (Rec. T.71) l2=iso8802 LAN LLC (ISO/IEC 8802/2) l2=x75 ITU-T X.75, SLP l2=x25_ll ... ITU-T X.25, link layer. This attribute and the following attributes through l2=iso7776 can optionally be followed by one or more of the following sub-attributes: mode=mode (mode of operation, either norm or ext), and window=window size (window size in k, 1-127). l2=x25_ml ... ITU-T X.25, multilink l2=hdlc_arm ... HDLC ARM (ISO/IEC 4335) l2=hdlc_nrm ... HDLC NRM (ISO/IEC 4335) l2=hdlc_abm ... HDLC ABM (ISO/IEC 4335) l2=q992 ... ITU-T Q.922 l2=iso7776 ... ISO 7776 DTE-DTE l2=user,info=information User-specified. information is an integer in the range 0 to 255. For layer three, the following (again, mutually exclusive) possibilities exist: l3=iso8473 ITU-T X.233 | ISO/IEC 8473 l3=t70 ITU-T T.70 minimum network layer l3=h321 ITU-T Recommendation H.321 l3=x25 ... ITU-T X.25, packet layer. This attribute and the following attributes through l3=x223 can optionally be followed by one or more of the following sub-attributes: mode=mode (see above), size=default packet size (4-12, corresponding to 16-4096), window=window size (see above). l3=iso8208 ... ISO/IEC 8208 l3=x223 ... ITU-T X.223 | ISO/IEC 8878 l3=tr9577,ipi=identifier ... ISO/IEC TR 9577. identifier is the initial protocol identifier in the range 0-255. For SNAP (0x80), the keyword snap can be used, and the following sub-attributes have to be specified: oui=3 bytes, and pid=2 bytes. l2=user,info=information User-specified, see above. l3=h310 ... ITU-T Recommendation H.310. The sub-attribute term=type (terminal type, rx, tx, or rxtx) is recognized. If present, it enables the two additional sub-attributes fw_mpx=capability (forward multiplexing capability, ts, ts_fec, ps, ps_fec, or h221) and bw_mpx=capa- bility. Both are optional. Note that commas must never follow colons or other commas. Also, whitespace is not allowed inside a SAP specification. SAP specifications are case-insensitive. On input, items must be written in exactly the order used in this document. EXAMPLES
blli:l2=iso8802 Classical IP over ATM (RFC1577) bhli:oui=0x0060D7,id=0x01000001,blli:l2=iso8802 Arequipa (RFC2170) blli:l3=tr9577,ipi=snap,oui=0x00A03E,pid=0x0002 LAN Emulation AUTHOR
Werner Almesberger, EPFL LRC <werner.almesberger@lrc.di.epfl.ch> Linux November 6, 1997 SAP(7)