XYGATE Access Control Reference Manual

XYGATE
®
Access Control Reference Manual
Chapter 2. Configuring XAC
XYPRO Technology Corporation 41 Proprietary and Confidential
2.7.4 The Concept of the Current Invoking User
You need a way to tell XAC to use the current user’s userid or alias regardless of who
it is at the moment, when it evaluates access to processes, utilities. Otherwise, you
would be unable to grant any user access to his or her own objects without creating a
separate rule for every user. Obviously, this is unworkable; hence, the keyword
GROUP.USER.
Product How to Indicate the Current User Invoking the Product Applicable Keywords
XAC GROUP.USER ACACL Commands
USER keyword
XPC GROUP.USER (*.USER and GROUP.*)
ALIAS:"#CURRENT"
PCACL PCGROUPs
OBJECT_OWNER
ACL
XOS OBJECT_OWNER_GROUP,OBJECT_OWNER_USER
NETUNDERLYING:OBJECT_OWNER_GROUP,OBJECT_
OWNER_USER
OSACL OSGROUPs
USER
OWNEDBY
ACL permissions
XSP GROUP.USER SPACL Commands
ACL
Job Owner
GROUP.USER
The GROUP.USER keyword represents the userid currently being used to invoke
XYGATEAC. For more information on configuring a XYGATEAC Command to run a
utility as the invoking user, refer to Appendix C:The ACACL File.”