Safeguard User's Guide (G06.24+, H06.03+)

Securing Disk Files
Safeguard User’s Guide422089-009
3-4
Adding a Disk File to the Safeguard Subsystem
The following exercise acquaints you with the process of adding a disk file to the
Safeguard database. The exercise assumes your user ID is 2,1, that you have a file
named report1, and that your default subvolume is $data.sales. The exercise further
assumes that you have started an interactive session by typing SAFECOM at the
TACL prompt.
Add the file named report1 to the Safeguard database using the following SAFECOM
command:
=ADD DISKFILE report1
This command creates an authorization record for report1. At this point, you can no
longer access the file because you have not specified an access control list. However,
because you are the file's owner, you can create an access control list that includes
your user ID. Only users specified on the access control list can access the file.
To see the authorization record for report1:
=INFO DISKFILE report1
The display shows:
The INFO display tells you that no access control list is defined.
Specify a simple access control list that gives you all authorities:
=ALTER DISKFILE report1, ACCESS 2,1 *
The asterisk (*) specifies READ, WRITE, EXECUTE, PURGE, and OWNER authorities
for user ID 2,1. It does not grant CREATE authority for disk files. CREATE is a special
type of authority that you use in conjunction with the PERSISTENT attribute. For
details, see The PERSISTENT Attribute on page 3-15.
Once again, display the authorization record:
=INFO DISKFILE report1
The display shows:
LAST-MODIFIED OWNER STATUS WARNING-MODE
$DATA.SALES
REPORT1 18JUL05, 11:00 2,1 THAWED OFF
NO ACCESS CONTROL LIST DEFINED!
LAST-MODIFIED OWNER STATUS WARNING-MODE
$DATA.SALES
REPORT1 18JUL05, 11:03 2,1 THAWED OFF
002,001 R,W,E,P, O