<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: rights/permissions -- plz help in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482271#M16281</link>
    <description>Nice help dear David Child&lt;BR /&gt;&lt;BR /&gt;Thanx n Regards&lt;BR /&gt;Maaz</description>
    <pubDate>Sat, 12 Feb 2005 00:09:48 GMT</pubDate>
    <dc:creator>Maaz</dc:creator>
    <dc:date>2005-02-12T00:09:48Z</dc:date>
    <item>
      <title>rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482261#M16271</link>
      <description>Dear Gurus&lt;BR /&gt;&lt;BR /&gt;how can i implement the permissions on the directory(say /data) so that users&lt;BR /&gt;&lt;BR /&gt;0, Read the file(s)&lt;BR /&gt;1, cant delete the file(s) &lt;BR /&gt;2, cant delete the contents(previously written data) of the file(s)&lt;BR /&gt;3, but they can append the in the file(s) i.e they cant change/remove previously saved data in the file, but they can append the data.&lt;BR /&gt;&lt;BR /&gt;plz help me implemet the above mentioned permissions.&lt;BR /&gt;&lt;BR /&gt;Thanx in adv.&lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;Maaz</description>
      <pubDate>Wed, 09 Feb 2005 13:08:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482261#M16271</guid>
      <dc:creator>Maaz</dc:creator>
      <dc:date>2005-02-09T13:08:39Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482262#M16272</link>
      <description>In using just the straight permissions and ownerships.&lt;BR /&gt;&lt;BR /&gt;Can't have a writable file that is forbidden to be deleted. &lt;BR /&gt;&lt;BR /&gt;The other option is to investigate Access Control Lists (ACLs). This will offer finer control options that you seek.</description>
      <pubDate>Wed, 09 Feb 2005 13:32:43 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482262#M16272</guid>
      <dc:creator>Rick Garland</dc:creator>
      <dc:date>2005-02-09T13:32:43Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482263#M16273</link>
      <description>Try:&lt;BR /&gt;&lt;BR /&gt;chmod 744 /data&lt;BR /&gt;&lt;BR /&gt;This will achieve all but 3). Maybe you can try investigating ACLs as per Rick's suggestion.</description>
      <pubDate>Wed, 09 Feb 2005 20:22:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482263#M16273</guid>
      <dc:creator>Dexter Filmore</dc:creator>
      <dc:date>2005-02-09T20:22:35Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482264#M16274</link>
      <description>Maaz:&lt;BR /&gt;&lt;BR /&gt;3) this - per default - only works on systems that (know securelevels and *) the chflags command.&lt;BR /&gt;&lt;BR /&gt;chflags uappnd filename&lt;BR /&gt;&lt;BR /&gt;but, if I remember correctly there are patches for linux to get You the chflags command. But I have no idea where I read that.&lt;BR /&gt;&lt;BR /&gt;ACLs would only allow You to set a &lt;CHANGE&gt; permission, but change includes overwriting, so this is useless.&lt;BR /&gt;&lt;BR /&gt;*) more specific: it only makes sense if You have securelevels so that noone can remove the flag.&lt;/CHANGE&gt;</description>
      <pubDate>Wed, 09 Feb 2005 22:09:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482264#M16274</guid>
      <dc:creator>Florian Heigl (new acc)</dc:creator>
      <dc:date>2005-02-09T22:09:47Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482265#M16275</link>
      <description>Thanx Dear All for the help/reply</description>
      <pubDate>Thu, 10 Feb 2005 12:08:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482265#M16275</guid>
      <dc:creator>Maaz</dc:creator>
      <dc:date>2005-02-10T12:08:39Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482266#M16276</link>
      <description>Dear Florian Heigl if u(any one is invited) can plz explain the "securelevels" &lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;Maaz&lt;BR /&gt;</description>
      <pubDate>Thu, 10 Feb 2005 12:24:14 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482266#M16276</guid>
      <dc:creator>Maaz</dc:creator>
      <dc:date>2005-02-10T12:24:14Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482267#M16277</link>
      <description>Hi Maaz,&lt;BR /&gt;&lt;BR /&gt;Use a stickybit so that only owner of the file will be able to delete the file.&lt;BR /&gt;&lt;BR /&gt;Set the basic permission &lt;BR /&gt;#chmod 766&lt;BR /&gt;&lt;BR /&gt;After that &lt;BR /&gt;&lt;BR /&gt;#chmod u+t   ( Sticky bit )&lt;BR /&gt;&lt;BR /&gt;After setting stickybit the permissions can be viewed as follows.&lt;BR /&gt;&lt;BR /&gt;-rwxrw-rwT    1 root        sys            1276  Jul  12   2002  xyz&lt;BR /&gt;&lt;BR /&gt;See man page of chmod for more info.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Syam&lt;BR /&gt;</description>
      <pubDate>Thu, 10 Feb 2005 13:14:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482267#M16277</guid>
      <dc:creator>Ranjith_5</dc:creator>
      <dc:date>2005-02-10T13:14:01Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482268#M16278</link>
      <description>Hi Maaz,&lt;BR /&gt;&lt;BR /&gt;A good doc here for your reference.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://docs.hp.com/en/B2355-90672/ch12s06.html" target="_blank"&gt;http://docs.hp.com/en/B2355-90672/ch12s06.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Syam</description>
      <pubDate>Thu, 10 Feb 2005 13:15:30 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482268#M16278</guid>
      <dc:creator>Ranjith_5</dc:creator>
      <dc:date>2005-02-10T13:15:30Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482269#M16279</link>
      <description>thnx dear Syam&lt;BR /&gt;&lt;BR /&gt;and again I m repeating my question.. Dear Florian Heigl if u(any one is invited) can plz explain the "securelevels" &lt;BR /&gt;&lt;BR /&gt;Regards&lt;BR /&gt;Maaz &lt;BR /&gt;</description>
      <pubDate>Fri, 11 Feb 2005 14:09:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482269#M16279</guid>
      <dc:creator>Maaz</dc:creator>
      <dc:date>2005-02-11T14:09:31Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482270#M16280</link>
      <description>Maaz,&lt;BR /&gt;&lt;BR /&gt;Another option would be;&lt;BR /&gt;&lt;BR /&gt;1.  limit access to read-only on the directories  and files. &lt;BR /&gt;2.  Create a script that would only allow appending to existing file&lt;BR /&gt;3.  Set  up 'sudo' with a "RUNAS" option.&lt;BR /&gt;4.  Add the script you created to the sudo definition.&lt;BR /&gt;&lt;BR /&gt;You'll need to keep tight control of the permissions for this script so no one can give themselves extra privileges.&lt;BR /&gt;&lt;BR /&gt;Example:&lt;BR /&gt;chown  security:security /data&lt;BR /&gt;chmod 755 /data&lt;BR /&gt;&lt;BR /&gt;Sudoers might have something like:&lt;BR /&gt;&lt;BR /&gt;User_Alias APPEND_USERS=operator1,opereator2&lt;BR /&gt;Host_Alias APPEND_SERVER=myhost&lt;BR /&gt;Runas_Alias APPEND_RUNAS=security&lt;BR /&gt;Cmnd_Alias APPEND_CMD=/usr/local/secure/append_script.ksh&lt;BR /&gt;APPEND_USERS   APPEND_SERVER=(APPEND_RUNAS) APPEND_CMD&lt;BR /&gt;&lt;BR /&gt;Then they (operator1, operator2, etc.) would run it as:&lt;BR /&gt;&lt;BR /&gt;$ sudo /usr/local/secure/append_script.ksh&lt;BR /&gt;&lt;BR /&gt;David&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Fri, 11 Feb 2005 16:25:59 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482270#M16280</guid>
      <dc:creator>David Child_1</dc:creator>
      <dc:date>2005-02-11T16:25:59Z</dc:date>
    </item>
    <item>
      <title>Re: rights/permissions -- plz help</title>
      <link>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482271#M16281</link>
      <description>Nice help dear David Child&lt;BR /&gt;&lt;BR /&gt;Thanx n Regards&lt;BR /&gt;Maaz</description>
      <pubDate>Sat, 12 Feb 2005 00:09:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/rights-permissions-plz-help/m-p/3482271#M16281</guid>
      <dc:creator>Maaz</dc:creator>
      <dc:date>2005-02-12T00:09:48Z</dc:date>
    </item>
  </channel>
</rss>

