Safeguard Audit Service Manual (G06.29+, H06.08+, J06.03+)
Audit File Record Formats
Safeguard Audit Service Manual — 520480-031
A - 109
OSS SEEP Attribute Record
Field Definitions
ZFILE-OPER
specifies the type of operation that changes the file privileges of an OSS or a
Guardian file. The defined values are:
ZSFG-VAL-FILE-OPER-SETFPRIV
specifies that a setfilepriv operation was performed on the file.
ZSFG-VAL-FILE-OPER-GUARDIAN-OPEN
specifies that the file was opened to perform a WRITE operation by a
Guardian process.
ZSFG-VAL-FILE-OPER-OSS-OPEN
specifies that the file was opened to perform a WRITE operation by an OSS
process.
ZSFG-VAL-FILE-OPER-SETMODE
specifies that a SETMODE operation was performed on the file.
ZSFG-VAL-FILE-OPER-DSMSCM-INSTALL
specifies that a DSM/SCM INSTALL operation was performed on the file.
ZSFG-VAL-FILE-OPER-SET-MODE-BITS
specifies that the setuid or setgid mode bits were set on the file.
ZFILE-PRIV-SOARFOPEN
specifies whether the PRIV-SOARFOPEN file privilege is set on a file.
ZFILE-PRIV-SETID
specifies whether the PRIV-SETID file pr
ivilege is set on a file.
OSS SEEP Attribute Record
An attempt to change the attributes of the OSS SEEP attributes is logged in the audit
trail. A primary record, followed by two secondary records, is written to the audit file.
The first audit record contains the image of the attributes before the attempt, and the
second audit record contains the image of the attempted change to the attributes.
Note. OssSEEPAttr is supported only on systems running H06.26 and later H-series RVUs
and J06.15 and later J-series RVUs.