RE: SYSTEM-F-NOPRIV on submit

From: La Roche, Michael (mlaroche_at_allsaintshealthcare.org)
Date: 05/21/03


Date: Wed, 21 May 2003 12:26:45 -0500

Frank,
Have you checked the user account in the UAF for privleges? Also check the
security on the file itself via dir/security testsub.com
Mike

                          __o
                          \<
                      (@)/(@)
 o------------------------------------------------o
{ Michael J. La Roche - Sr. Systems Analyst }
{ All Saints Healthcare System, Inc. }
{ 1320 Wisconsin Avenue }
{ Racine, WI 53403 }
{ V: 262-687-7741 }
{ F: 262-687-5595 }
{ E: mlaroche@allsaintshealthcare.org }
 o--------------------------------------------------o

"Artificial intelligence is no match for natural stupidity."
Jonnie Nunez

> -----Original Message-----
> From: frank brown [SMTP:frank.brown@ci.seattle.wa.us]
> Sent: Wednesday, May 21, 2003 11:36 AM
> To: Info-VAX@Mvb.Saic.Com
> Subject: SYSTEM-F-NOPRIV on submit
>
> I get error SYSTEM-F-NOPRIV when entering the following interactive DCL:
>
> $ submit/noprint testsub.com
> Job TESTSUB (queue JUNK_BATCH, entry 715) started on JUNK_BATCH
> $ sh entry/ful 715
> Entry Jobname Username Blocks Status
> ------ ---------- ----------- -------- -------
> 715 TESTSUB OPERATOR Retained on error
> %RMS-E-PRV, insufficient privilege or file protection violation
> -RMS-E-PRV, insufficient privilege or file protection violation
> -SYSTEM-F-NOPRIV, no privilege for attempted operation
>
> I did a SET PROCESS/PRIV=BYPASS and SET PROCESS/PRIV=CMKRNL but continue
> to
> get this error.
>
> (The job testsub.com runs successfully from batch when submitted by
> another
> account.)
>
> $ show proc/priv
>
> Process privileges:
> CMKRNL may change mode to kernel
> SYSNAM may insert in system logical name table
> GRPNAM may insert in group logical name table
> DETACH may create detached processes
> GROUP may affect other processes in same group
> PRMMBX may create permanent mailbox
> TMPMBX may create temporary mailbox
> MOUNT may execute mount acp function
> OPER may perform operator functions
> NETMBX may create network device
> PHY_IO may do physical i/o
> BYPASS may bypass all object access controls
> READALL may read anything as the owner
>
> Process rights:
> INTERACTIVE
> REMOTE
>
> System rights:
> SYS$NODE_JUNK
>
> Anyone have a clue why this error occurs when submitting jobs from this
> particular account?
>
> TIA,
> Frank Brown
> Seattle Fire Dept.
> http://www.inwa.net/~frog/
>
>
>
This message, and any attachment, is privileged and confidential
information, and is intended only for the use of the addressee and All
Saints Healthcare. If you are not the intended recipient, immediately
destroy this message and notify the sender of the error. Please note that
any disclosure, copying, distribution or use of the contents of this message
is prohibited. All Saints Healthcare does not endorse any opinions,
conclusions or other information contained within this message that does not
pertain to official business.



Relevant Pages

  • Re: SYSTEM-F-NOPRIV on submit
    ... "frank brown" wrote in message ... > $ submit/noprint testsub.com ... account didn't have permission to create the ...
    (comp.os.vms)
  • [SLE] Suse 9.0 and Active Directory
    ... I'm then kicked back out to the login prompt. ... this account to login into the machine? ... If you are not the intended recipient of this ... message, unauthorized forwarding, printing, copying, distribution, or using ...
    (SuSE)
  • [SLE] Suse 9.0 and Active Directory
    ... I'm then kicked back out to the login prompt. ... this account to login into the machine? ... If you are not the intended recipient of this ... message, unauthorized forwarding, printing, copying, distribution, or using ...
    (SuSE)
  • Re: [Full-Disclosure] Netgear WG602 Accesspoint vulnerability
    ... I found a new firware update on the Netgear product support page that removes this ... > contains an undocumented administrative account which cannot be disabled. ... > based on z-com OEM designs. ... This email is for the intended recipient only. ...
    (Full-Disclosure)
  • Re: Enable account to have email but no domain access
    ... >The account would be setup to forward email to another user. ... What will happen is that the primary SMTP ... to give the intended recipient another SMTP addresses. ...
    (microsoft.public.exchange.admin)