Re: permission-SOLVED
Posted in 1998
Maria L. Wilson wrote:
>
> Leffler, Jonathan wrote:
> >
> > Thanks for the feedback, and I'm sorry none of us have been able to help
> > resolve the problem yet. Since it complaining about the access to shared
> > memory, maybe you should be looking at what the ipcs command can tell you.
> > On my machine here (Sun E-6000 with Solaris 2.5.1 and 7.24.UC4), the
> > results of running 'ipcs -am' are:
> >
> > IPC status from <running system> as of Thu Apr 9 12:42:20 1998
> > T ID KEY MODE OWNER GROUP CREATOR CGROUP NATTCH
> > SEGSZ CPID LPID ATIME DTIME CTIME
> > Shared Memory:
> > m 202 0x525d4803 --rw-rw-rw- root informix root informix 11
> > 614400 6961 496 11:16:21 11:16:21 8:44:26
> > m 5 0x531e4803 --rw-rw-rw- root informix root informix 10
> > 294912 3329 3436 12:39:33 12:38:49 23:26:47
> > m 108 0x13e6bd75 --rw-rw-rw- root root root root 2
> > 34368 3624 22399 5:21:19 6:11:02 23:27:13
> > m 12 0x525f4803 --rw-rw-rw- root informix root informix 10
> > 614400 28979 2935 12:11:25 12:23:04 11:35:46
> > m 1713 0x0001e240 --rw-r--r-- root other root other 1
> > 548868 27968 27968 18:37:27 no-entry 18:37:27
> >
> > (On my screen, that's legible because its in 8-point Courier font and I use
> > a fairly wide email viewing window; you may have to undo some line breaks
> > to make it legible in your email - would your email accept MS rich-text
> > format (RTF)? If so, I can resend this message in RTF for you).
> >
> > The segments with ID 108 and 1713 are not Informix shared memory chunks,
> > but the others are, and they belong to 3 different OnLine systems. If the
> > permissions on your chunks are much different, and especially if the group
> > permissions do not match (group should be informix, and group should have
> > rw permission), then these permissions are probably the immediate problem.
> > Fixing it then requires you to find out why the permissions are not being
> > set correctly, and since they are set by oninit, that's where to look next.
> > Did you check the permissions on oninit? It should be owned by root, in
> > group informix, with both SUID and SGID bits set.
> >
> > -rwsr-sr-- 1 root informix 6214212 Aug 18 1997
> > /opt/informix/7.23.UC4/bin/onstat
> >
> > Yours,
> > Jonathan Leffler (jleffler@visa.com) #include <bother.ms-exchange.h>
> >
> > ----------
> > From: Maria L. Wilson[SMTP:m.l.wilson@larc.nasa.gov]
> > Sent: Thursday, April 09, 1998 10:12 AM
> > To: informix-list
> > Subject: Re: permission
> >
> > Maria L. Wilson wrote:
> > >
> > > Hi all,
> > >
> > > I have informix 7.23 on Solaris 2.6 and am having the following
> > > problem...
> (snipped!)
>
> Jonathan and all,
>
> Here's ipcs -am
>
> IPC status from <running system> as of Fri Apr 10 11:08:40 1998
> T ID KEY MODE OWNER GROUP CREATOR
> CGROUP NATTCH SEGSZ CPID LPID ATIME DTIME CTIME
> Shared Memory:
> m 200 0x52564801 --rw-rw---- informix informix informix
> informix 6 9420800 20248 28011 10:59:50 10:59:50 13:35:25
> m 201 0x52564802 --rw-rw---- informix informix informix
> informix 6 8192000 20248 28011 10:59:50 10:59:50 13:35:25
> m 202 0x52564803 --rw-rw-rw- informix informix informix
> informix 7 180224 20248 28011 10:59:50 10:59:50 13:35:33
>
> and here's my onstat and oninit perm's:
>
> -rwsr-sr-- 1 root informix 6214212 Apr 6 13:31 oninit*
>
> -rwxr-sr-x 1 informix informix 1246772 Apr 6 13:31 onstat*
>
> Interesting the owner in oninit is root and the owner in the ipcs is
> informix?
> Any ideas?
>
> I've also checked the perm's in bin and they look fine.
>
> drwxrwxr-x 2 informix informix 2048 Apr 1 11:49 bin/
>
> I still receive the message:
> onstat: Shared memory: permission denied.
> when I try to use onstat - as a user... not user informix.
>
> Any other help would be appreciated. I have yet to try Jack's script,
> that is next!
>
> thanks, maria
>
> --------------------------------------------------------
> Maria L. Wilson 757.766.8265
> Computer Sciences Corporation 757.766.2571 fax
> NASA Langley Research Center m.l.wilson@larc.nasa.gov
> 3217 North Armistead Ave. http://www.larc.nasa.gov
> Hampton, Va 23666
> --------------------------------------------------------
> If there is no God, who pops up the next Kleenex?
> -- Art Hoppe
> --------------------------------------------------------
This wierd problem has FINALLY been solved. Thanks to all who helped.
The problem was an overactive sysadmin who had put NOSUID on the
/usr/local partition in the /etc/vfstab file.
Thanks again, Maria
--------------------------------------------------------
Maria L. Wilson 757.766.8265
Computer Sciences Corporation 757.766.2571 fax
NASA Langley Research Center m.l.wilson@larc.nasa.gov
3217 North Armistead Ave. http://www.larc.nasa.gov
Hampton, Va 23666
--------------------------------------------------------
If there is no God, who pops up the next Kleenex?
-- Art Hoppe
--------------------------------------------------------