Safeguard Reference Manual (G06.29+, H06.08+, J06.03+)

Table Of Contents
Process and Subprocess Security Commands
Safeguard Reference Manual 520618-030
11 - 3 7
SHOW PROCESS and SUBPROCESS Commands
The SHOW PROCESS report displays these attribute values:
OWNER gn,un
is the user ID (group number and member number) of the user who will own this
process name authorization record if a process name having these attribute values
is added to Safeguard protection.
WARNING-MODE
{ON|OFF}
is the current warning-mode state of this process or subprocess. ON indicates that
the protection record is in warning mode. The initial value is OFF, which indicates
that warning mode is disabled for this process or subprocess.
AUDIT-ACCESS-PASS = a-spec AUDIT-MANAGE-PASS = a-spec
AUDIT-ACCESS-FAIL = a-spec AUDIT-MANAGE-FAIL = a-spec
are the conditions under which the Safeguard software will audit attempts to
access this process name and attempts to manage this authorization record.
These fields are described in detail for audit-spec under the SET PROCESS or
SUBPROCESS command.
user-spec [DENY] auth-list
is a current default ACL entry for processes. For a full description, see
INFO
PROCESS and SUBPROCESS Brief Report on page 11-24.
[ NO ACCESS CONTROL LIST DEFINED! ]
indicates no ACL entries have been defined in the current default attribute values.
Use SET PROCESS...ACCESS or SET SUBPROCESS...ACCESS to define
default ACL entries. You can use ADD PROCESS...ACCESS or ADD
Figure 11-3. SHOW PROCESS Report Format
TYPE OWNER WARNING-MODE
PROCESS gn,un
{ON|OFF}
OBJECT-TEXT-DESCRIPTION =
AUDIT-ACCESS-PASS = a-sp
ec AUDIT-MANAGE-PASS = a-spec
AUDIT-ACCESS-FAIL = a-spec AUDIT-MANAGE-FAIL = a-spec
user-spec [DENY] authority-list
user-spec [DENY] authority-list
. . .
. . .
[ NO ACCESS CONTROL LIST DEFINED! ]