Trusted Solaris 8 HW 7/03 Transition Guide

Authorizations

Authorizations are now part of the Solaris 8 environment. Therefore, Trusted Solaris 7 authorizations have been renamed in the Trusted Solaris 8 environment to correspond to their Solaris 8 counterparts. See the file /etc/security/auth_attr for a full list of authorizations, and the auth_attr(4) man page for an explanation of the syntax. The following tables show the Trusted Solaris 7 to Trusted Solaris 8 authorization name correspondences, ordered by authorization number.

Table 1–6 Authorizations 1 through 27

No. 

Trusted Solaris 7 Names 

Trusted Solaris 8 Equivalents 

TSOL_AUTH_ENABLE_LOGIN 

solaris.login.enable

TSOL_AUTH_REMOTE_LOGIN 

solaris.login.remote

TSOL_AUTH_TERMINAL_LOGIN 

solaris.login.remote

TSOL_AUTH_FILE_AUDIT 

solaris.file.audit

TSOL_AUTH_FILE_DOWNGRADE_SL 

solaris.label.file.downgrade

TSOL_AUTH_FILE_UPGRADE_SL 

solaris.label.file.upgrade

TSOL_AUTH_FILE_OWNER 

solaris.file.owner

TSOL_AUTH_FILE_CHOWN 

solaris.file.chown

TSOL_AUTH_FILE_SETPRIV 

solaris.file.privs

10 

TSOL_AUTH_ALLOCATE 

solaris.device.allocate

11 

TSOL_AUTH_WIN_DOWNGRADE_SL 

solaris.label.win.downgrade

12 

TSOL_AUTH_WIN_UPGRADE_SL 

solaris.label.win.upgrade

13 

TSOL_AUTH_CRON_ADMIN 

solaris.jobs.admin

14 

TSOL_AUTH_SYS_ACCRED_SET 

solaris.label.range

15 

TSOL_AUTH_BYPASS_FILE_VIEW 

solaris.label.win.noview

16 

TSOL_AUTH_SHUTDOWN 

solaris.system.shutdown

17 

TSOL_AUTH_USER_IDENT 

solaris.admin.usermgr.write

18 

TSOL_AUTH_USER_PASSWORD 

solaris.admin.usermgr.pswd

19 

TSOL_AUTH_USER_SELF 

None 

20 

TSOL_AUTH_USER_LABELS 

solaris.admin.usermgr.label

21 

TSOL_AUTH_USER_AUDIT 

solaris.admin.usermgr.audit

22 

TSOL_AUTH_USER_PROFILES 

solaris.profmgr.*

23 

TSOL_AUTH_USER_IDLE 

None 

24 

TSOL_AUTH_USER_ROLES 

solaris.role.assign

25 

TSOL_AUTH_USER_HOME 

solaris.admin.usermgr.write

26 

TSOL_AUTH_PRINT_POSTSCRIPT 

solaris.print.ps

27 

TSOL_AUTH_PRINT_UNLABELED 

solaris.print.unlabeled

Table 1–7 Authorization Numbers 28 through 55

No. 

Trusted Solaris 7 Names 

Trusted Solaris 8 Equivalents 

28 

TSOL_AUTH_DB_ALIASES 

None 

29 

TSOL_AUTH_DB_AUTO_HOME 

solaris.admin.fsmgr.write

30 

TSOL_AUTH_DB_BOOTPARAMS 

None 

31 

TSOL_AUTH_DB_ETHERS 

solaris.network.hosts.write

32 

TSOL_AUTH_DB_GROUP 

solaris.admin.usermgr.write

33 

TSOL_AUTH_DB_HOSTS 

solaris.network.hosts.write

34 

TSOL_AUTH_DB_LOCALE 

solaris.network.hosts.write

35 

TSOL_AUTH_DB_NETGROUP 

solaris.network.hosts.write

36 

TSOL_AUTH_DB_NETMASKS 

solaris.network.hosts.write

37 

TSOL_AUTH_DB_NETWORKS 

solaris.network.hosts.write

38 

TSOL_AUTH_DB_PASSWD 

solaris.admin.usermgr.pswd

39 

TSOL_AUTH_DB_PROTOCOLS 

None 

40 

TSOL_AUTH_DB_RPC 

None 

41 

TSOL_AUTH_DB_SERVICES 

None 

42 

TSOL_AUTH_DB_TIMEZONE 

None 

43 

TSOL_AUTH_DB_TNIDB 

solaris.network.security.write

44 

TSOL_AUTH_DB_TNRHDB 

solaris.network.security.write

45 

TSOL_AUTH_DB_TNRHTP 

solaris.network.security.write

46 

TSOL_AUTH_CRON_USER 

solaris.jobs.user

47 

TSOL_AUTH_AT_ADMIN 

solaris.jobs.admin

48 

TSOL_AUTH_AT_USER 

solaris.jobs.user

49 

TSOL_AUTH_PRINT_ADMIN 

solaris.print.admin

50 

TSOL_AUTH_PRINT_NOBANNER 

solaris.print.nobanner

51 

TSOL_AUTH_CONFIG_DEVICE 

solaris.device.config

52 

TSOL_AUTH_REVOKE_DEVICE 

solaris.device.revoke

53 

TSOL_AUTH_PRINT_CANCEL 

solaris.print.cancel

54 

TSOL_AUTH_PRINT_LIST 

solaris.print.list

55 

TSOL_AUTH_PRINT_MAC_OVERRIDE 

solaris.label.print