Software Distributor (SD-UX) Administration Guide HP-UX 11i v1, 11i v2, and 11i v3 (762797-001, March 2014)

Table Of Contents
The target agent verifies that the controller user has write permission on the target root, if the
product already exists.
The source (depot) agent verifies that the target agent system has read permission on the
source product.
Removal (swremove)
If the object is a product on a depot, the target agent verifies that the controller user has write
permission on the target product.
If the object is a product on a root, the target agent verifies that the controller user has write
permission on the target root.
If the object is a depot or root, or the last product contained in one of these, before removing
the container the target agent must verify that the controller user has delete permission on the
target root or depot.
Configuration (swconfig)
The same permission checks are made as for the swremove operation above, except that this
command does not apply to depots.
Verify (swverify)
If the object is a product on a depot, the target agent verifies that the controller user has read
permission on the target product.
If the object is a product on a root, the target agent verifies that the controller user has write
permission on the target root (since scripts are executed).
Registering Depots (swreg)
To register a new depot, the target daemon verifies read permission on the depot to be
registered and insert permission on the host.
Changing ACLs (swacl)
To change an ACL, write permission is required.
To list an ACL, list permission is required.
Request Scripts (swask)
To query a user and obtain installation information, interactive control scripts are used.
Modify (swmodify)
To change or add information to the Installed Products Database (IPD) or depot catalog files,
write permission is required.
164 SD-UX Security