Re: dbaccess Permissions -- scenarios, unproven
Posted in 1995
In article <3q2idd$9h1@dale.goodeal.msk.su>, Vadim J. Nikitin <nvj@goodeal.msk.su> wrote: > >But if your application is real executeable file, you can set its access > rights >to something like > > srwx--x--- appuser appgrp > >where appuser is only user having some database privilleges. Good idea, except that Informix uses the login-ID derived from the real uid and not the effective uid to check database privileges. Running a setuid executable changes only the effective uid for the duration of the run. At least, that's the way it works on our system. Walt. -- Walt Hultgren Internet: walt@rmy.emory.edu (IP 128.140.8.1) Emory University UUCP: {...,gatech,rutgers,uunet}!emory!rmy!walt 954 Gatewood Road, NE BITNET: walt@EMORY Atlanta, GA 30329 USA Voice: +1 404 727 0648