Mailing List Archive



Back to the month index Back to the list index

Andy Mitchell (afm@biotech.ufl.edu)
Fri, 25 Apr 1997 11:51:54 -0500 (EST)


Date: Fri, 25 Apr 1997 11:51:54 -0500 (EST)
From: "Andy Mitchell" <afm@biotech.ufl.edu>
Message-Id: <199704251651.LAA09741@snarl.biotech.ufl.edu>
Subject: [mSQL] ACL format

Hello all,
        Apparently I do not quite understand the format of the msql.acl
file. I had thought that an entry in the msql.acl file such as:

database=test
read=afm,-root
write=root
host=*
access=local,remote
option=rfc931

would allow read access to the user afm, deny read access to all others including
root. This seems to be correct. However, my problems are from the write
line. What does this mean as it stands? Unless I have screwed something up
(always a possibility!) I'd have thought root alone had permission to write
this database? However, I can insert/update/delete records at will as any
user on the system. This was not tested by doing a simple su as root to
some other users, but rather by creating individual users and logging in as
them. (i.e. my uid, euid, gid, egid were those of the unprivlidged user.
One other note, it seems some sort of OR condition exists (at least) between
write and read privs: users not given access under read or write are unable
to access the database at all, which makes perfect sense. So what about
write permissions? What am I missing??

Thanks,
        Andy

Andrew F. Mitchell "If two twins are beside themselves with
Network Systems joy, wouldn't they need seats for five?"
www.biotech.ufl.edu/~afm - JAH
afm@biotech.ufl.edu
--------------------------------------------------------------------------
To remove yourself from the Mini SQL mailing list send a message containing
"unsubscribe" to "unsubscribe" to msql-list-request@bunyip.com. Send a message containing
"info msql-list" to majordomo@bunyip.com for info on monthly archives of
the list. For more help, mail owner-msql-list@bunyip.com NOT the msql-list!