UPM Components - Policy Configuration
![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
![]() |
|||||||
Policy Configuration File
The Privilege Manager configuration file contains the security policy that the Master daemon will consider when it accepts or rejects requests from the Privilege Manager Client. The configuration file can specify constraints based on the following attributes:
- Username
- Group membership
- Application name
- Application arguments
- Environment variable values
- Umask (file permissions)
- Nice value (priority of jobs run)
- Working directory from which the request is made
- Host from which a request is submitted (submitting host)
- tty device from which a request is submitted
- Host on which the request will be run (execution host)
- Time of day and day of week that the user is allowed to run the application
- Exit status or output of any specified program to be executed as part of the decision making process
- A challenge to the user to type in one or more specified passwords
- Whether the program being requested has a checksum








