Safeguard Reference Manual (G06.24+, H06.03+ )

Device and Subdevice Security Commands
Safeguard Reference Manual520618-013
10-6
ADD DEVICE and SUBDEVICE Commands
LIKE subdevice-name
adopts the existing device attribute values of subdevice-name as the attribute
values to be used for the authorization record or records being added.
subdevice-name
identifies the subdevice whose current device-attribute values are to be
assigned to the subdevice authorization record or records being added.
subdevice-name can be any subdevice name.
device-attribute
defines a device attribute value for the device or subdevice authorization record or
records being added. The device-attributes are:
OWNER [owner-id]
ACCESS access-spec [ ; access-spec ] ...
AUDIT-ACCESS-PASS [audit-spec]
AUDIT-ACCESS-FAIL [audit-spec]
AUDIT-MANAGE-PASS [audit-spec]
AUDIT-MANAGE-FAIL [audit-spec]
WARNING-MODE {ON|OFF}
OWNER [owner-id]
specifies the new owner of the device or subdevice being altered. owner-id
can be either:
[\node-spec.]group-name.member-name
[\node-spec.]group-num , member-num
If you omit owner-id, owner-id is set to your user ID.
ACCESS access-spec [ ; access-spec ] ...
changes the ACL for filename-list by adding or deleting ACL entries or by
changing the authority list of a current ACL entry.
An ACL contains as many as 50 entries that grant or deny access authorities to
users and user groups.
access-spec has the form:
user-list [-] [DENY] authority-list
group-list [-] [DENY] authority-list
user-list
specifies users who are granted (or denied) the access authorities
specified with the following authority-list. user-list can be either:
net-user-spec
( net-user-spec [ , net-user-spec ] ... )