Expand Configuration and Management Manual (G06.24+)

Managing the Network
Expand Configuration and Management Manual523347-008
19-7
Remote File Security
Remote File Security
A user on node \WEST who wants to access a file (including a disk file, device, or
process) on a node \EAST must satisfy the following requirements:
The user must also be established as a user on node \EAST.
The user must have matching remote passwords established on both nodes.
To access a disk file, the user on node \WEST must have authority to access the
file on node \EAST as a remote accessor.
Each of these requirements is described in the following subsections.
Establishing Global User IDs
Each user is known to the local node by a user name and a user ID (for example,
ADMIN.BILL and 6,14). A user can access files on a remote node only if the users
user name and user ID are also known to the remote node.
For example, if ADMIN.BILL, who is on node \WEST, wants to access a file on remote
node \EAST, the remote node must also have a user identified as ADMIN.BILL with a
user ID of 6,14. A super group user (user ID 255,255) or a group manager at node
\EAST must add ADMIN.BILL with the TACL ADDUSER command.
You can also use the Safeguard command interpreter, SAFECOM, to define user
authentication records. Refer to the Safeguard Administrators Manual for information
about SAFECOM.
You can verify user names and IDs with the USERS command. As shown in the
following example, the USERS command returns the default group and user of the
users logon, the group user ID, the current security, and the default volume and
subvolume:
1> USERS
GROUP . USER I.D. # SECURITY DEFAULT VOLUMEID
ADMIN .BILL 6,14 NONO $PUBS.BILL
Establishing Remote Passwords
After user IDs for network users are added to relevant nodes on the network, remote
passwords must be established for each remote node. Remote passwords are
specified with the TACL REMOTEPASSWORD command or the RPASSWRD program.
For example, ADMIN.BILL (user ID 6,14) was added at nodes \WEST and \EAST. At
node \WEST, the following commands are entered to establish an allow-access remote
password to node \WEST:
logon admin.bill
remotepassword \west, shazam