RE: onstat: Shared memory: permission denied???
Posted in 2000
From: Scott Black <sblack@elsouth.com>
>
>I've heard this for the past few years on this list, and I have yet to
>find a reason why. We do it, and have NEVER had ANY problems
>whatsoever. There is however a slight advantage in having a readymade
>group that MIS can use. Whatever the security reasons are, they are
>still there. If I were unable to do something due to not being in group
>Informix, I would just su to root (or informix) and do it anyway. This
>way is less typing.
That's where you work. I've been on plenty of sites where Informix and root
passwords are jealously guarded because the majority of the users are quite
dangerous.
>Why all the paranoia?
Well, for instance, let's say you make a couple of people members of the
Informix group for the sake of your convenience, so they don't bother you
with DBA stuff all the time. For instance, your colleague gets passed over
for promotion or a raise, and decides to do an oninit -iy as revenge.
If you are the DBA and/or SA, and you do this, it probably doesn't matter or
make any difference, but it is the thin end of the wedge. It doesn't really
matter if you do it for the informix admin (although you should really be
logged in as informix to do DBA stuff, IMHO).
> -----Original Message-----
>From: Obnoxio The Clown [mailto:obnoxio@hotmail.com]
>
>Nononononononononononononononononononononononononononononononononono!!
>
>From: dmoeller@geocities.com
> >
> >You might try adding that 'other' user to the informix group.
>
>Nooooooooooooooooooooooooooooooo!!! Major security violation.
________________________________________________________________________
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com