Software Distributor Administration Guide for HP-UX 11i

SD-UX Security
ACL Entries
Chapter 9282
ACL Templates
There are two ACLs that are used to create the initial ACLs that protect
newly created objects: product ACL templates
(global_product_template or product_template) and container
ACL templates (global_soc_template).
Figure 9-2 ACL Templates
When a product is put into a depot with swcopy or swpackage, SD-UX
uses a product ACL template (provided by the depot that contains that
product) to define the initial permissions of the new product’s ACL.
SD-UX uses the product ACL template of the host system
(global_product_template) to initialize the product ACL template of
the new depot and uses the container ACL template of the host system
(global_soc_template) to initialize depot and root ACLs.
Thus, there are three ACLs on the host:
Host ACL
Attached to and controlling access to the host object itself.
Container ACL Template (global_soc_template)
Used to initialize the ACL protecting new depots and roots created
on the host.