10gR2 has no permission for "other" unix user

We installed 10gR2 on RHEL3, created a database. As user "oracle", we are able to connect to the database. As any other user, we are not able to get to sqlplus. The environment variables are fine for the user.
When checked, we found that $ORACLE_HOME has 740 permission, and many directories/files underneath have the same permission. So, the "other" user is not able to get to the executable, or even it does, it can't execute it.
Anyone seen this from 10gR2 install on Linux? Any good work around?
I have not seen this from 10gR1.

Hi.
I have not tried to install 10gR2 yet, so I'll do a guess, ok? Maybe Oracle is doing this to get a more secure environment.
You asked for a workaround. Well, I have a procedure I follow in Oracle installations, and do not consider it to be a workaround. Anyway, it may be helpful for you.
On many of my installations, I've changed umask for "oracle" account to 0027, in order to get files created with 0640 and directories with 0750 permisssion flags. Doing this is a security issue: you prevents, on purpose, users from others groups even to access oracle directories and files.
Moreover, I use to create an "orauser" group, and make "oracle" acount use this group as a secondary group . On Linux, you may achieve this by typing:
groupadd orauser # Create a new group called "orauser"
gpasswd -a oracle orauser # Add user "oracle" to group "orauser"
id oracle # Just check the oracle account
Then, you may add any user you need to "orauser" group as well. In order to get all environment variables to be correctly set, I create a "oraenv.sh" shell script, to be run for all users on logon. The code bellow may be added on /etc/profile, or on a new shell script on /etc/profile.d (this directory is present on some Unix/Linux flavours):
# Define location for oraenv.sh shell script.
oraenvScript=/oracle/local/bin/oraenv.sh
# Check if user belongs to groups: dba, oinstall, oper, orauser
if [ `id | egrep '(dba)|(oinstall)|(oper)|(orauser)' | wc -w` -gt 0 ]
then
# Check if oraenv.sh file exists
if [ -f $oraenvScript ]
then
# Source Oracle environment variables from oraenv.sh
. $oraenvScript
fi
fi
Hope this help.
Best regards,
Danilo

Similar Messages

  • Deny meeting request before sending the request if for example the time frame is to far in the future or if the atendee has no permission for the ressource.

    Hi @ all,
    I've got a question regarding a migration scenario from Exchange 2003 to Exchange 2010 / 2013.
    In 2003 a pop up appears in general before sending the request if a meeting request is for example too far in the future or if the atendee has no permission for the ressource. 
    In a few tests we did the request is sent to all the participants and afterwards the room sends the cancellation email. This is very annyoing because in 2003 the request was not sent thereby giving one the possibility to change the meeting with the correct
    ressource. 
    Is it possible to generate this pop up in 2010 / 2013 hindering you to send a meeting request until you get it right as it is in 2003?
    Thanks in advance and regards from Germany
    Rene

    Extensions
    Produtools Manuals 2.1 Community Toolbar 3.21.0.1 ({b2bf7b3f-bf0b-4c48-aec6-f92c51be63e1})
    Open the Add-ons Manager by
    Pressing the '''Alt''' or '''F10''' key to bring up the tool bar.
    Followed by; '''Tools > Add-ons.'''
    Hot key; '''<Control> ''(Mac: <Command>)'' <Shift> A)'''
    On the left side of the page, select Extensions.

  • WHat is the best way for other iphone users to share pictures with me?  I am doing a project which req. people to send me 100 pictures at a time that I'll be putting in my iphoto?

    WHat is the best way for other iphone users to share pictures with me?  I am doing a project which req. people to send me 100 pictures at a time that I'll be putting in my iphoto? thank you.

    ingridlisa,
    I'd suggest to ask them to create Shared PhotoStreams and to invite you to view the streams, see:
    iCloud: Using and troubleshooting Shared Photo Streams
    Regards
    Léonie
    Added:
    that I'll be putting in my iphoto?
    Will you be collecting the photos in iPhoto on your iPhone or on a Mac? On a Mac a Shared PhotoStream requires Mac OS X 10.8.2.

  • Tried to reset an error that my Id is disabled.  Have.seen this to be a problem for other iPhone users.  Any advice on correcting or contacting Apple direct?  Thanks

    Tried to reset an error that my Id is disabled.  Have.seen this to be a problem for other iPhone users.  Any advice on correcting or contacting Apple direct?  Thanks

    Try contacting iTunes store support here: http://www.apple.com/emea/support/itunes/contact.html.

  • TS4268 I can't receive text on my IPad except for other apple users

    I can't receive text on my IPad except from other apple users. My Iphone works fine, texting to Ipad, however I can't receive from others.

    SMS/MMS is a voice cell technology and not natively supported on any device not a cellphone. Messaging through iMessage is the only method included with the iPad. There are third-party apps that support SMS messaging available the iTunes Store, though I don't know how well any of them work or if indeed any can support receving SMS messages or can only send.
    Regards.

  • Calendar permission for cross-forest users

    How can I grant mailbox folder like doctor's Outlook 2010 calendar to a cross-forest user like a receptionist. 
    The reception accepts and manages all booking for about 10 doctors and they used to work perfectly.  When reception complained that she started seeing Busy status for say 3 out of 10 doctors, I noticed the other 7 working calendars have DomainB\Reception
    explicitly added on the Calendar permission while the 3 faulty ones don't.
    When I tried:
    Add-mailboxfolderpermission -Id 'DomainADoctor1:\calendar' -user 'DomainB\Reception' -accessrights editor
    I simply get the error "The user "DomainB\Reception" is either not valid SMTP address, or there is no matching information."
    Obviously, the cross-forest permission still works but I cannot make the powershell command to work.  I have also tried the ExFolder utility to no avail.  The old Exch admin has left the company.  We use Exchange 2010 SP2
    Thank you for any assistance.

    Just to add more info, the reception mailbox is hosted on DomainA and it is linked to an external account DomainB\Reception. 
    Alternatively, I tried:
    Add-mailboxfolderpermission -Id 'DomainADoctor1:\calendar' -user 'Reception @ DomainA.com' -accessrights editor
    and the command works fine but when the Reception checks the calendar on both Outlook and OWA, she only sees "Busy" on each existing appointments and cannot add new. 
    For those calendars that work, the Editor permission shows "NT User: DomainB" while those that won't shows DomainB mailbox.
    Appreciate any help on this.

  • Copyright permission for iTunes U User's Guide

    I am teaching a workshop for faculty at my university on how to use iTunes U, and I want to provide copies of the User's Guide to workshop attendees. However, our Printing Services department will not copy it because it contains a copyright notice. The same goes for iDVD and iMovie, which I also teach in workshops to faculty. How do I go about getting copyright permission from Apple for these user's guides?

    I would certainely look at http://www.copyright.gov/fls/fl102.html to see if the document would fall under fair use. If this workshop is non profit, meaning if its for teachers, faculty and students then I would think it would fall under fair use. Please correct me if i'm wrong
    Jacob

  • Do You have a method of EWS API to set the share a calendar for other another user

    Do You have a method of EWS API to set the share a calendar for  another user , kindly if you can help as soon as possible i'm going to develop an application and share a calendar events as well ,,, thanks my regards 

    You can add and remove delegates.
    https://msdn.microsoft.com/EN-US/library/office/dn641959(v=exchg.150).aspx This does not work exactly like the sharing feature in Outlook in that no sharing message is sent.

  • Making Programs "not there" for other account/users...

    I'm not even sure if I'm in the right place for posting this question. If not, my apologies. There are many programs installed on my computer that no one else uses or even knows what it is (I'm the computer savy person) and shows up in their account, like in applications or where ever it may be. So my question is, can I make it so that it's not there for that person to use, and only on my account for me to use (I am the administrator of the computer). Also, will it save any space on my HD if I made the programs "not there" on other accounts? Thanks.

    1. If you dragged the application onto your hard disk, create a new Finder window and click on the item in the sidebar with the house icon. Create a new folder and move the applications in here. Some application updaters may expect the application to be located in a specific place; this isn't an issue for updates you apply by dragging files into folders.
    2. No.
    (16972)

  • SPSecurityTokenService slow for other domain users

    We have a situation where users from another trusted domain suddenly are having slowness getting into SharePoint. On tracking the ULS entries, I noticed that the SPSecurityTokenService was taking a while to complete issuing a token. Everytime, the wait time
    is approximately the same time.
    Leaving Monitored Scope (SPSecurityTokenService.GetOutputClaimsIdentity()). Execution Time=42163.5752588667
    Leaving Monitored Scope (SPSecurityTokenService.Issue). Execution Time=42163.9392716113
    Any idea what might be causing this? We just started experiencing this recently.
    Thanks in advance,
    Jake.

    Was a nearby trusted domain controller firewalled to prevent the SharePoint server from communicating with it? Was a nearby trusted domain controller removed?
    Trevor Seward
    Follow or contact me at...
    &nbsp&nbsp
    This post is my own opinion and does not necessarily reflect the opinion or view of Microsoft, its employees, or other MVPs.

  • The new IPAD OS has some issues for Ipad 1 users

    I have found that I can not delete email messages.  What it does when you delete the nesasge is turn it into a no sender no subject message. You can't do any thing with this type of message. It also did something to the on screen typing I can now type faster than the screen will accept.
    What else have you found?
    Gord

    It sounds like it is time to try a rest. Press & hold together the Home and Power buttons for 10+ seconds, ignoring the red power-off slider, until you see the Apple logo.

  • I bought iphone 5 in september last year and the whatsapp which I installed was free of cost.The number which I used is the one I was using in my android phone and validity for its expiring in april but for other users its lifetime free.how can I get it ?

    I bought iphone 5 in september last year and the whatsapp which I installed was free of cost.The number which I used is the one I was using in my android phone and validity for its expiring in april but for other iphone users its lifetime free.how can I get the lifetime free validity?

    kratigupta wrote:
    how can I get the lifetime free validity?
    Huh? AFAIK, such does not exist. Read here:
    http://www.whatsapp.com/faq/general/23014681

  • Receiving notifications for other users calendar changes

    Since upgrading to ML, I receive change notifications for other icloud users calendars I subscribed to, even when "ignore notifications" of this calendars is ticked in the Calendar application.
    How can I prevent to receive such change notifications?
    Currently, I need to remove the notification in NC and I must remove the notification in the Calendar inbox as well.
    Thats really annoying.

    No one?

  • How to access oracle with any unix user (like root)?

    I installed Oracle 10g on Redhat Enterprise Linux 3.
    I created one oracle user, and installed oracle in oracle users home directory. In oracle user I can access oracle very well. But I can not use oracle with other unix users like root. What kind of permissions I need to set to do so?

    You should never try to connect to Oracle as root, but if you want to connect as any other OS user, you will need to run ChangePerm.sh in $ORACLE_HOME/install in order to do this. It may not be present until you upgrade above the base release (like 10.2.0.3).
    Can not Logon To SQL*Plus as non-Oracle User: Libclntsh.So.10.1: Permission Denied
    http://metalink.oracle.com/metalink/plsql/ml2_documents.showDocument?p_database_id=NOT&p_id=420083.1

  • Publishing a list with specifics views anf filters for all the users to see it.

    Hi i was working on the item level permissions of a list which are accessed by all users.
    I have applied the item level permissions for specific users having specific records to work with.
    Now, there are situations when we need to show all the users all the data but in read only mode.
    How do i work on the report so that the user can actually only see the data.
    The Admin will pick the list with a specific view and apply filters and then expose it for other end users to view.
    How do i achive that?

    Hello,
    How did you set item level permission? I mean,  list "advanced settings" OR manually edit the items permission by breaking the permission.
    If you have broken the permission and user doesn't have permission on  items then there is no way to show item to users. You must provide at least read access to view the item.
    In you case, you can give contributor right to everyone on all items (by inherit parent permission) then go to list settings page-->advanced settings-->then set item level permission as shown in pic:
    Hope it could help
    Hemendra:Yesterday is just a memory,Tomorrow we may never see
    Please remember to mark the replies as answers if they help and unmark them if they provide no help

Maybe you are looking for

  • Schedule Job with Job_close after successful job doesn't work

    Hi guys, I'm using FM CLOSE_JOB with parameters :              JOBCOUNT             = w_JobId             JOBNAME              = w_JobName             PREDJOB_CHECKSTAT    = 'X'             PRED_JOBCOUNT        = w_oldJobId             PRED_JOBNAME  

  • Invoice Park related problem

    hi, we've faced a problem regarding parking the invoice in MIR7. In MIR7 we can park twice same line-item of a PO and we can post those duplicate parked documents also. So how do we put the restriction to prevent the duplicate parking. please help me

  • How do I redownload OS X Lion installer?

    I am currently running a beta of OS X Lion.  When I go to my purchased tab in the App Store the install button is gray'ed out.  How to you get the App Store to let you redownload the installer?

  • How to 'reset' a video?

    Hi, I have some swf-videos on an PDF-file and they stop on the last slide. Is there a option to jump automaticly back to the first slide and wait for a new start-click? Any advice would be great !! Greetings, Wolvo

  • Adobe rader for ios

    I´m having prboblems viewing pdf files on  iphone, its the lates version for ios 7.1, there´s no more updates. pdf files are exported from excel and some  display fine but some others don´t. Thanks in advanced.