Do the CA XCOM for UNIX inetd.conf entries really need to specify "root" for xcomtcp?
search cancel

Do the CA XCOM for UNIX inetd.conf entries really need to specify "root" for xcomtcp?

book

Article ID: 52292

calendar_today

Updated On:

Products

XCOM Data Transport XCOM Data Transport - Windows XCOM Data Transport - Linux PC XCOM Data Transport - z/OS

Issue/Introduction

Description:

CA XCOM for UNIX is designed and implemented to run under effective "root" userid. Any change or reconfiguration of this is not supported.

Solution:

The xcomtcp process is started as root and verifies the userid and password of incoming transfers. If they are correct, the process is switched to the userid to run the transfer. If the xcomtcp permissions are changed, switching to the incoming userid would fail, so the transfers would fail.

This is the correct definition:

txpi stream tcp nowait root /usr/lib/xcom/xcomtcp xcomtcp REMOTE 0txpis stream tcp nowait root /usr/lib/xcom/xcomtcp xcomtcp REMOTE 0 SSL

Environment

Release:
Component: XCUHP9