devassign(4) — File Formats
NAME
devassign − Device assignment database file (Enhanced Security)
DESCRIPTION
The system supports a single device assignment database that contains entries for login terminals and X terminals.
The format of the terminal control database file is identical to other system authentication database files and is described in the authcap(4) reference page. The following keyword identifiers are supported:
v_devsThe identifier in this field specifies a comma-separated list of aliases that refer to the same device defined by the entry. Use of this field avoids the need to replicate device assignment database entries for all device aliases.
v_typeThis field specifies the device that is described by the entry. Device types supported include:
#ifdef SEC_NON_SILVER
printerThe device is assigned as a printer, which may be subject to output labeling.
tapeThe device is assigned as a tape device, which may be used for the import and export of data. #endif /∗ SEC_NON_SILVER ∗/
terminalThe device is assigned as a local login terminal device.
xdisplayThe X windows display entry for handling graphics heads or X terminals.
v_usersThis field, if specified, contains a comma-separated list of user names that are permitted to use the device for login or the import and export of data. If the list is not present, all users are permitted to use the device. If the list is present, it is searched for a match by the login program to determine if the user is permitted to use the device.
EXAMPLES
The following example shows a device assignment database entry for a terminal device with a list of allowed users:
tty0:v_devs=/dev/tty0:\
:v_type=terminal:v_users=may,tdy,ssv,rgb:\
:chkent:
The following example shows a device assignment database entry for an X terminal device:
local\:0|local\:0.0:v_devs=local\:0,local\:0.0:v_type=xdisplay:chkent:
#ifdef SEC_NON_SILVER The following example shows a device assignment database entry for a tape device assigned as a device for import and export of labeled or nonlabeled data:
mt0:v_devs=/dev/rmt0,/dev/mt0:\
:v_type=tape:\
:v_assign=import,export,label,nolabel:\
:chkent:
The tape device, /dev/rmt0, has an alias by which the device is also known, /dev/mt0. These names refer to the same physical device. The device is assigned as a tape device indicating it can be used for import and export of labeled data. #endif /∗ SEC_NON_SILVER ∗/
FILES
/etc/auth/system/devassign
Specifies the pathname of the file.
RELATED INFORMATION
Commands: cpio(1), login(1), tar(1)
Functions: getdvagent(3)
Files: authcap(4), default(4)