Article 4TK20 Unable to set ACLs on sulog file - need to grant read permission to a normal user on AIX 6.1

Unable to set ACLs on sulog file - need to grant read permission to a normal user on AIX 6.1

by
nirvaanr
from LinuxQuestions.org on (#4TK20)
Hi,

I need to grant read permission to a normal user on sulog file on AIX 6.1.

As root, I did "acledit sulog" and "aclget" shows "extended permissions" as "enabled" and normal user "splunk" has read permissions.

When I try to access sulog file as "splunk" user it won't allow and "aclget" for splunk user shows "extended permissions" as "disabled".

I also tried to remound /var with "acl" option, it throws "Invalid mount option"..

Please advise, thanks!!

Code:splunk@TESTAIX61(/var/adm)# uname -a
AIX TESTAIX61 1 6 00CACC954C00
splunk@TESTAIX61(/var/adm)# oslevel -s
6100-09-12-1838
splunk@TESTAIX61(/var/adm)#
root@TESTAIX61(/var/adm)# acledit sulog
Should the modified ACL be applied? (yes) or (no) yes
root@TESTAIX61(/var/adm)# aclget sulog
*
* ACL_type AIXC
*
attributes:
base permissions
owner(root): rw-
group(system): ---
others: ---
extended permissions
enabled
permit r-x u:splunk
root@TESTAIX61(/var/adm)# su - splunk
splunk@TESTAIX61(/home/splunk)# tail /var/adm/sulog
/var/adm/sulog: Permission denied
splunk@TESTAIX61(/home/splunk)# id
uid=228(splunk) gid=206(splunk) groups=1(staff)
splunk@TESTAIX61(/home/splunk)# cd /var/adm
splunk@TESTAIX61(/var/adm)# aclget sulog
*
* ACL_type AIXC
*
attributes:
base permissions
owner(root): rw-
group(system): ---
others: ---
extended permissions
disabled
permit r-x u:splunk
splunk@TESTAIX61(/var/adm)#latest?d=yIl2AUoC8zA latest?i=BSe0NdkbeIw:LzsvM1y42Vk:F7zBnMy latest?i=BSe0NdkbeIw:LzsvM1y42Vk:V_sGLiP latest?d=qj6IDK7rITs latest?i=BSe0NdkbeIw:LzsvM1y42Vk:gIN9vFwBSe0NdkbeIw
External Content
Source RSS or Atom Feed
Feed Location https://feeds.feedburner.com/linuxquestions/latest
Feed Title LinuxQuestions.org
Feed Link https://www.linuxquestions.org/questions/
Reply 0 comments