Restricting Access to Log Files


Users can access log files using operating system commands and functions and also with the database tool Database Manager.


Restricting Access with Operating System Commands and Functions

On UNIX/Linux, unprivileged operating system users cannot access log files; only members of the special operating system user group <sdba_group> can do so.

On Microsoft Windows, all operating system users can access log files. To restrict access in Microsoft Windows, proceed as described in Restricting Access to Database Resources (Microsoft Windows).

Restricting Access with the Database Manager

Withdraw the server authorization for reading database files from all Database Manager operators that should not have access to log files.

?     Database Manager GUI: Withdraw the server authorization Database File Access. Proceed as described in Changing the Server Authorizations.

Database Manager CLI: Withdraw the server authorization DBFileRead. Follow the procedure described in user_put.

See also:

Defining Clear Authorizations for Users

Concepts of the Database System,

Special Operating System Users and Groups (UNIX/Linux)

Server Authorizations for the DBM Server