[Info-vax] Need to set up a special purpose account

Tom Adams tadamsmar at gmail.com
Mon Oct 10 09:31:48 EDT 2016


On Monday, October 10, 2016 at 9:17:18 AM UTC-4, Tom Adams wrote:
> On Friday, October 7, 2016 at 3:48:49 PM UTC-4, Stephen Hoffman wrote:
> > On 2016-10-07 19:37:15 +0000, Tom Adams said:
> > 
> > > None of the anonymous-related logical names are defined.
> > 
> > Fix the log owership to allow ANONYMOUS to write the logs.  [ANONY,ANONYMOUS]
> > 
> > 
> > 
> > -- 
> > Pure Personal Opinion | HoffmanLabs LLC
> 
> One odd thing I noticed is this:
> 
> $ dir dsa0:[ucx$ftp]*anon*/owner/date
> 
> Directory DSA0:[UCX$FTP]
> 
> UCX$FTP_ANONYMOUS.LOG;1
>                       8-AUG-1997 07:15:00.61  [UCX$AUX,UCX$FTP]
> 
> Total of 1 file.
> $ dir dsa0:[tcpip$ftp]*anon*/owner/date
> 
> Directory DSA0:[TCPIP$FTP]
> 
> TCPIP$FTP_ANONYMOUS.LOG;1
>                       8-AUG-1997 07:15:00.61  [SYSTEM]
> 
> Total of 1 file.
> 
> This is the same file with different names (not sure how that works).
> 
> But the TCPIP one is owned by [SYSTEM]
> 
> I set the owner of TCPIP$FTP_ANONYMOUS to [TCPIP$AUX,TCPIP$FTP] (the owner of the directory) but I got a confusing error in TCPIP$FTP_RUN.LOG when I tested.
> 
> So, I set the owner back to [SYSTEM] and set the protection to W:RWED. But I got the same error, here is the error:
> 
> 
> %SYSTEM-F-NOSUCHID, unknown rights identifier
> %TCPIP-E-FTP_LOGFAL, remote interactive login failure anonymous
> -TCPIP-I-FTP_NODE, client host name: EESD.nheerl.epa.gov
> -LOGIN-F-NOSUCHUSER, no such user
> %TCPIP-I-FTP_SESCON, FTP SERVER: session connection from EESD.nheerl.epa.gov at
> 10-OCT-2016 09:10:52.48
> 
> I tried 3 passwords: guest, sysmgr, and adams
> 
> 2 of them are account names in the UAF.  I got the same error for all three.

Actually the error message is wrong and my interpretation of the test
was wrong.

If I use a valid UAF username as the password, I get this in TCPIP$FTP_RUN.LOG:


%TCPIP-I-FTP_SESCON, FTP SERVER: session connection from EESD.nheerl.epa.gov at
10-OCT-2016 09:20:23.54
%SYSTEM-F-NOSUCHID, unknown rights identifier
%TCPIP-E-FTP_LOGFAL, remote interactive login failure anonymous
-TCPIP-I-FTP_NODE, client host name: EESD.nheerl.epa.gov
-LOGIN-F-NOSUCHUSER, no such user

For other passwords, including guest and no password (just hitting return) I get:

%TCPIP-I-FTP_SESCON, FTP SERVER: session connection from EESD.nheerl.epa.gov at
10-OCT-2016 09:16:06.21
%SYSTEM-F-NOSUCHID, unknown rights identifier
%TCPIP-E-FTP_LOGFAL, remote interactive login failure anonymous
-TCPIP-I-FTP_NODE, client host name: EESD.nheerl.epa.gov
-LOGIN-F-NOSUCHUSER, no such user





More information about the Info-vax mailing list