Safeguard Reference Manual (G06.24+, H06.03+ )

Process and Subprocess Security Commands
Safeguard Reference Manual520618-013
11-35
SHOW PROCESS and SUBPROCESS Commands
OUT listfile
directs the SHOW PROCESS or SUBPROCESS report to listfile. After
executing the SHOW command, SAFECOM redirects its output to the current OUT
file.
For listfile, specify any file name. SAFECOM opens listfile and appends
the SHOW PROCESS report to the file. If listfile does not exist, SAFECOM
creates an EDIT file and writes the SHOW PROCESS report to that file.
SHOW PROCESS and SUBPROCESS Report Format
The SHOW PROCESS command displays the current default attribute values in the
format shown in Figure 11-3. The SHOW SUBPROCESS command output is similar,
except that a subprocess name appears in place of a process name.
The SHOW PROCESS report displays these attribute values:
OWNER gn,un
is the user ID (group number and member number) of the user who will own this
process name authorization record if a process name having these attribute values
is added to Safeguard protection.
WARNING-MODE
{ON|OFF}
is the current warning-mode state of this process or subprocess. ON indicates that
the protection record is in warning mode. The initial value is OFF, which indicates
that warning mode is disabled for this process or subprocess.
AUDIT-ACCESS-PASS = a-spec AUDIT-MANAGE-PASS = a-spec
AUDIT-ACCESS-FAIL = a-spec AUDIT-MANAGE-FAIL = a-spec
are the conditions under which the Safeguard software will audit attempts to
access this process name and attempts to manage this authorization record.
These fields are described in detail for audit-spec under the SET PROCESS or
SUBPROCESS command.
Figure 11-3. SHOW PROCESS Report Format
TYPE OWNER WARNING-MODE
PROCESS gn,un {ON|OFF}
AUDIT-ACCESS-PASS = a-spec AUDIT-MANAGE-PASS = a-spec
AUDIT-ACCESS-FAIL = a-spec AUDIT-MANAGE-FAIL = a-spec
user-spec [DENY] authority-list
user-spec [DENY] authority-list
. . .
. . .
[ NO ACCESS CONTROL LIST DEFINED! ]