Safeguard Reference Manual (G06.29+, H06.08+, J06.03+)

Table Of Contents
OBJECTTYPE Security Commands
Safeguard Reference Manual 520618-030
12 - 31
SHOW OBJECTTYPE Command
AUDIT-ACCESS-PASS = a-spec AUDIT-MANAGE-PASS = a-spec
AUDIT-ACCESS-FAIL = a-spec AUDIT-MANAGE-FAIL = a-spec
are the conditions under which the Safeguard software will audit attempts to create
authorization records for any specific objects and attempts to manage this
authorization record. For more information about these fields for audit-spec, see
the SET OBJECTTYPE Command on page 12-23.
user-spec [DENY] authority-list
is a current default ACL entry for the object class. For a full description, see INFO
OBJECTTYPE Brief Report on page 12-19.
[ NO ACCESS CONTROL LIST DEFINED! ]
indicates no default ACL entries are defined. Use SET OBJECTTYPE...ACCESS
to define default ACL entries. You can use ADD OBJECTTYPE...ACCESS to
define ACL entries when you create an authorization record.
Example
This SHOW OBJECTTYPE report displays the current default object type attribute
values for a class of objects. To display the report:
=SHOW OBJECTTYPE
The report shows:
These current default values indicate th
at:
The owner of an object type that has these attribute values is the local super-group
member with user ID 255,18.
The Safeguard software audits all successful and unsuccessful attempts to create
an authorization record for any specific object belonging to an object class defined
by a future ADD OBJECTTYPE command.
Caution. If you do not specify an ACL for an object class, only the local super ID can add an
authorization record for an object of that object class.
TYPE OWNER
OBJECTTYPE 255,18
OBJECT-TEXT-DESCRIPTION =
AUDIT-ACCESS-PASS = ALL AUDIT-MANAGE-PASS = NONE
AUDIT-ACCESS-FAIL = ALL AUDIT-MANAGE-FAIL = NONE
033,013 C,O
033,255 C,O
255,018 C,O