[Search for users] [Overall Top Noters] [List of all Conferences] [Download this site]

Conference decalp::rtrnotes

Title:Reliable Transaction Router
Moderator:TALER::DESHMUKH
Created:Tue Dec 12 1989
Last Modified:Thu Jun 05 1997
Last Successful Update:Fri Jun 06 1997
Number of topics:695
Total number of notes:2564

693.0. "some privileges problem" by CARDHU::BOURAKOFF (MCS/IM Switzerland 761-4820) Tue Jun 03 1997 15:18

    On an AXP, I cannot start RTR :-(
    
    
OpenVMS V6.2-1H3  on node VIRGIN   3-JUN-1997 10:54:05.26  Uptime  10 10:38:18
    
  Pid    Process Name    State  Pri      I/O       CPU       Page flts  Pages
21001514 RTRD            LEF      8      551   0 00:00:02.21      1473    303   
2100151C RTR_2100151C    LEF      8      559   0 00:00:01.49      1685    364   
2100151E BOURAKOFF       CUR  0   4      736   0 00:00:01.44      1331    119   

    RTR version 3.1C (142)
    
sh process/priv

 3-JUN-1997 10:56:06.54   User: BOURAKOFF        Process ID:   2100151E
                          Node: VIRGIN           Process name: "BOURAKOFF"
 
Authorized privileges:
 NETMBX    SETPRV    SYSPRV    TMPMBX
 
Process privileges:
 ACNT                 may suppress accounting messages
 ALLSPOOL             may allocate spooled device
 ALTPRI               may set any priority value
 AUDIT                may direct audit to system security audit log
 BUGCHK               may make bug check log entries
 BYPASS               may bypass all object access controls
 CMEXEC               may change mode to exec
 CMKRNL               may change mode to kernel
 DETACH               may create detached processes
 DIAGNOSE             may diagnose devices
 DOWNGRADE            may downgrade object secrecy
 EXQUOTA              may exceed disk quota
 GROUP                may affect other processes in same group
 GRPNAM               may insert in group logical name table
 GRPPRV               may access group objects via system protection
 IMPORT               may set classification for unlabeled object
 LOG_IO               may do logical i/o
 MOUNT                may execute mount acp function
 NETMBX               may create network device
 OPER                 may perform operator functions
 PFNMAP               may map to specific physical pages
 PHY_IO               may do physical i/o
 PRMCEB               may create permanent common event clusters
 PRMGBL               may create permanent global sections
 PRMMBX               may create permanent mailbox
 PSWAPM               may change process swap mode
 READALL              may read anything as the owner
 SECURITY             may perform security administration functions
 SETPRV               may set any privilege bit
 SHARE                may assign channels to non-shared devices
 SHMEM                may create/delete objects in shared memory
 SYSGBL               may create system wide global sections
 SYSLCK               may lock system wide resources
 SYSNAM               may insert in system logical name table
 SYSPRV               may access objects via system protection
 TMPMBX               may create temporary mailbox
 UPGRADE              may upgrade object integrity
 VOLPRO               may override volume protection
 WORLD                may affect other processes in the world
 
Process rights:
 INTERACTIVE                       
 REMOTE                            
 
System rights:
 SYS$NODE_VIRGIN                   
    
    VIRGIN>rtr 
    Copyright Digital Equipment Corporation 1994, 1997. All rights
    reserved.
    RTR> start rtr
    %RTR-I-STACOMSRV, starting command server on node VIRGIN
    %RTR-F-INSUFPRIV, insufficient privileges to run RTR
    RTR> show rtr/version
    %RTR-F-INSUFPRIV, insufficient privileges to run RTR
    RTR> exit
    VIRGIN>
    
    Why ?
    
    Pierre
T.RTitleUserPersonal
Name
DateLines
693.1to compare with a vaxCARDHU::BOURAKOFFMCS/IM Switzerland 761-4820Tue Jun 03 1997 15:2929
    On a Vax ... without priv :-)  (ok it's a field test version but
    nevermind)
    
    DRUIDE>rtr
    Copyright Digital Equipment Corporation 1994-1996. All rights reserved.
    RTR> show rtr/version
    %RTR-I-STACOMSRV, starting command server on node DRUIDE
    
    RTR version:    RTR V3.1B (100) FT
    
    RTR> exit
    
     3-JUN-1997 11:21:42.28   User: BOURAKOFF        Process ID:   20800577
                              Node: DRUIDE           Process name:
    "_TNA18:"
     
    Authorized privileges:
     NETMBX    SETPRV    TMPMBX
     
    Process privileges:
     NETMBX               may create network device
     TMPMBX               may create temporary mailbox
     
    Process rights:
     INTERACTIVE                       
     REMOTE                            
     
    System rights:
     SYS$NODE_DRUIDE                   
693.2need OPER as default privilegeDECALP::KLAVINSEd Klavins, RTR EngineeringWed Jun 04 1997 13:115
    The account used for RTR management functions (START RTR, etc) needs
    at least SYSLCK and OPER (or RTR$OPERATOR user right instead of OPER).
    Check that these are in your default privileges in SYSUAF.
    
    ed
693.3something else, but where ...CARDHU::BOURAKOFFMCS/IM Switzerland 761-4820Thu Jun 05 1997 14:5062
    Bonjour Ed,
    
    I don't think that's the problem ...
    
    VIRGIN>set proce/priv=all
    VIRGIN>set def sys$system
    VIRGIN>mc authorize
    UAF> show bourakoff
    
    Username: BOURAKOFF                        Owner:  179781 Pierre
    Bourakoff
    Account:  LAUSANNE                         UIC:    [77,2] ([BOURAKOFF])
    CLI:      DCL                              Tables: DCLTABLES
    Default:  USER4:[BOURAKOFF]
    LGICMD:   LOGIN.COM
    Flags: 
    Primary days:   Mon Tue Wed Thu Fri        
    Secondary days:                     Sat Sun
    No access restrictions
    Expiration:            (none)    Pwdminimum: 15   Login Fails:     0
    Pwdlifetime:         30 00:00    Pwdchange:  12-MAY-1997 08:31 
    Last Login:  5-JUN-1997 10:44 (interactive),  5-JUN-1997 10:36
    (non-interactive)
    Maxjobs:         0  Fillm:       300  Bytlm:       150000
    Maxacctjobs:     0  Shrfillm:      0  Pbytlm:           0
    Maxdetach:       0  BIOlm:      2000  JTquota:       4096
    Prclm:          15  DIOlm:      2000  WSdef:         2048
    Prio:            4  ASTlm:     10000  WSquo:         4096
    Queprio:         0  TQElm:       300  WSextent:      8096
    CPU:        (none)  Enqlm:     18000  Pgflquo:     100000
    Authorized Privileges: 
      NETMBX    SETPRV    SYSPRV    TMPMBX
    Default Privileges: 
      NETMBX    OPER      SETPRV    SYSLCK    SYSPRV    TMPMBX    WORLD
    UAF> exit
    %UAF-I-NOMODS, no modifications made to system authorization file
    %UAF-I-NAFNOMODS, no modifications made to network proxy database
    %UAF-I-RDBNOMODS, no modifications made to rights database
    VIRGIN>rtr
    Copyright Digital Equipment Corporation 1994, 1997. All rights
    reserved.
    RTR> show rtr/version
    %RTR-I-STACOMSRV, starting command server on node VIRGIN
    %RTR-F-INSUFPRIV, insufficient privileges to run RTR
    RTR> 
    
    and now if I type that command a second time
    
    RTR> show rtr/version
    %RTR-F-INSUFPRIV, insufficient privileges to run RTR
    RTR> exit
    VIRGIN>rtr
    Copyright Digital Equipment Corporation 1994, 1997. All rights
    reserved.
    RTR> show rtr/version
    %RTR-F-INSUFPRIV, insufficient privileges to run RTR
    RTR> exit
    
    Any idea ?
    
    Regards
    Pierre