Permissions for secure.log

Every time I repair permissions, there's one item that always needs its permissions repaired, the secure.log. I understand that its permissions are changed by some maintenance script, and the whole issue should be harmless. But what I don't understand is why doesn't that same maintenance script reinstate the original permissions after it has run. Or else, why doesn't Disk Utility just let them be?
We now have a situation where the secure.log has certain permissions. Some OSX-native software (maintenance script) changes them, and another OSX-native software (Disk Utility) thinks that's wrong and changes them back. The next time the maintenance script runs, it changes them again, which Disk Utility again thinks is wrong, and so on in a perpetual cycle. It seems pretty pointless to me. It also seems like an easy thing to "correct". It's not like it's a malfunctioning third party software involved.
Is there some obscure technical reason for why this is so?

jofima wrote:
Every time I repair permissions, there's one item that always needs its permissions repaired, the secure.log. I understand that its permissions are changed by some maintenance script, and the whole issue should be harmless.
See toward the end of this User Tip for an explanation:
Spurious Permission errors in OS X 10.4.
The weekly maintenance script is ever so slightly more permissive in that it allows group read access. If you're at all worried you can change the script, but it really isn't worth it.
Is there some obscure technical reason for why this is so?
Basically it was low in the list of changes, I assume.
It was still there in early releases of 10.5, but appears now to be gone in 10.5.7. I know it was still there last February.

Similar Messages

  • Permissions fix for secure.log and iTunes frameworks

    Aperture 1.5
    PBG4 showed minor to considerable performance improvements. Once my main library finished running on the Quad, with 6600 traction engine, I started to do some real work.
    The following is in Project View on some images with patches/healing and straighten applied.
    IT WAS UGLY. SBOD every time I touched anything (yes, all previews completed). 45 secs to open the first image (8Mb RAW from Canon 20d). 5-6 secs. for any touch on Levels or Exposure. IMPOSSIBLE.
    Switched off and reduced res. of JPG's in Preferences. No difference.
    BTW Apple Devt. Spank time> There is NO way to turn off Preview creation and run as batch later that I can see. Please fix. Agreed they render in background but why not wait until you leave focus on that image .... it's recreating a preview after every adjustment I make. C'mon guys, get real, that should be fixed asap.
    Quit Aperture, restarted. Just as bad. Aperture is the only app. running, and Activity Monitor shows 319% CPU with 480Mb RAM just with a Levels change ... sounds high. 6-7 sec. response time for anything I do and 20-40 secs for image rendering, except adjacent images. Quit Aperture.
    Decided to run Repair Permissions (RAID = 0 drive). Fixed iTunes frameworks and secure.log. I believe secure.log to be the culprit.
    Restarted Aperture and performance improvements obvious. Sliders now work real-time and image rendering a couple of seconds. Reapplied Preferences setting for Previews and no significant performance degradation (though it is interesting watching the task list pause the preview generation when you make further edits.)

    It sounds like you should just turn off Maintain Previews for the project you are on (selct prj and change state in top level gear menu in prj pane) - then make your adjustments ( your previews won't be up to date then of course) but the when you are ready to make into previews just select all the images and choose Update Preview manually from the context menu.
    LC, Classic, 8500, DP2.5, MBP2.1   Mac OS X (10.4.7)   i have a cool mousepad

  • Defining NTFS Permissions for High Volume Security

    The default NTFS file permissions for the boot volume in Windows 8.1 appear to give Modify access to "Authenticated Users".   That is really permissive.   I have a lot of folders I do not want anyone not authenticated as Administrator
    to touch.   Of course I could change every folder manually and test for side effects, but I am hoping someone has already tested this and has published a document.   I am looking for a detailed description of how to secure the volume so that ordinary
    users cannot modify attributes, filenames, or data for most files on the volume.
    Will

    Ronald, thanks for your reply.  Now we are talking the right topic.    
    1) How did you modify the root permissions?  One way to do that might be to remove Modify and Create authority for the "Authenticated Users" entity and replace that with just Read & Execute.
    2) I understand that Microsoft tightened things to prevent normal users from having modify access inside subfolders.   This works fine for well behaved applications that use things like the "Program Files" subfolder.   Unfortunately, many
    applications are badly behaved and put themselves directly under the root of the boot volume.  AMD for example puts its video drivers in c:\amd by default.     Since that folder inherits from the root, and the root gives permissive access to
    users to create and modify files, now many sensitive DLLs in this install folder could be easily modified by any user.
    One of the worst viruses I ever had was a denial of service virus that acted simply by hiding every single file on your file system.   We had locked down NTFS permissions but had forgotten to lock down file attributes.   It took forever to recover
    from that.   
    So, bottom line, I like to run as tight a file security as possible, and I like to stay logged in as a normal user and greatly restrict what normal users can change.    
    Microsoft definitely tightened things up in Windows 8 and that's great.
    Will

  • Private Secure Log Permissions being changed by someone????

    I have been having to repair the permissions on my ibook often. How do these get changed, by who, and what threat is it to me? How much control over my computer can one get????
    Below is the repair I just had to make.
    Repairing permissions for “Macintosh HD”
    Determining correct file permissions.
    Group differs on ./private/etc/authorization, should be 80, group is 0
    Owner and group corrected on ./private/etc/authorization
    Permissions corrected on ./private/etc/authorization
    Permissions differ on ./private/var/log/secure.log, should be -rw------- , they are -rw-r-----
    Owner and group corrected on ./private/var/log/secure.log
    Permissions corrected on ./private/var/log/secure.log
    Permissions repair complete
    The privileges have been verified or repaired on the selected volume
      Mac OS X (10.4.9)  

    The permissions on the secure.log file are being changed by the weekly cron task, which is being run by Mac OS X itself as opposed to someone accessing the computer locally or over the network.
    (21837)

  • Repair permissions - always has to correct secure.log

    I've noticed that every time I repair permissions the ./private/var/log/secure.log is corrected from -rw-r----- to -rw-------
    I'm curious to know why this is happening - is it something I should be worried about?
    Cheers
    Steve

    It happens because the "weekly" maintenance task has a different (and better) idea of what the permissions for this file should be. See the tail end of this User Tip: Spurious Permission errors in OS X 10.4.
    So, in a way, you are more secure without running Repair Permissions!

  • Secure.log always need permissions repaired?

    If I ever have any permissions to repair on both my iMac and Macbook pro its always this:
    Repairing permissions for “Macintosh HD”
    Determining correct file permissions.
    Permissions differ on ./private/var/log/secure.log, should be -rw------- , they are -rw-r-----
    What is the secure.log and is there an action I can prevent this from re-occuring?
    Any help would be appreciated.

    What is the secure.log and is there an action I can prevent this from re-occuring?You won't always get this error, only after the weekly maintenance run. You can find details here: Spurious Permission errors in OS X 10.4

  • When trying to update my apps on my phone, after logging in it says my account has been disabled for security reasons. I've updated my password but it still says its disabled. Any thoughts?!

    When trying to update my apps on my phone, after logging in it says my account has been disabled for security reasons. I've updated my password but it still says its disabled. Any thoughts?!

    Hi,
    If you have followed everything in the link below, and still have the problem, click on one of the links at the very bottom under "Additional Information". That's all we can do for you here:
    http://support.apple.com/kb/TS2446
    Cheers,
    GB

  • Password security - set permissions for different users

    I am using Abobe Acrobat 9 Pro.
    In the HELP menu, there is a security section in the contents, In the overview, it states the following:
    "Each security method offers a different set of benefits. However, they all allow you to specify encryption algorithms, select the document components to encrypt, and set permissions for different users."
    I would like to know how you can set permissions for different users using Password Security.
    I am the only one in the company who has Acrobat 9 Pro and all others have Adobe Reader 8.
    I have created a PDF file in Acrobat 9, this file is accessible to anyone with Abobe Reader. I would like to set different permissions for different users. For example, i would like certain individuals to print the document and other individuals to not be allowed to print. Can this be acheived using Password Security?
    Many Thanks

    I have created a PDF file in Acrobat 9, this file is accessible to
    anyone with Abobe Reader. I would like to set different permissions for
    different users. For example, i would like certain individuals to print
    the document and other individuals to not be allowed to print. Can this
    be acheived using Password Security?
    No.

  • Security Permissions for simple file transfer

    Hey All
    I'm transferring a file using RMI as part of an enhancement. I want to restrict where the file can be transferred to and thus will use a security manager (On the destination object). However the object its being transferred to shares the same JVM with another quite complex application that currently doesn't need a security manager.
    Will I need to set a whole host of permissions for this application even though I only want to restrict file writing?
    I suspect this is the case just want confirmation.

    Hi,
    In the code which receives the file being transferred, you might try calling System.setSecurityManager(new SecurityManager()). Use the configured Java policy to limit where the file can be written. After calling setSecurityManager(), save the file. Before returning to the rest of the application, call System.setSecurityManager(null). Ensure that your code has setSecurityManager permission or this call will fail. If this idea doesn't work, you could simply use a security manager for the whole application, and just grant AllPermission to everything except the file receiving code. Everyone says AllPermission is dangerous, but it's no more dangerous than running with no security manager at all :)

  • Parse Security Logs for User Account logon Computer Name

    Greetings,
    I was recently tasked with creating a list of user accounts and the computer in which they logged onto.  Unfortunately, we do not have time to use the logon script method.   I believe we can achieve this goal using software similar to LANSweeper
    however not all computers will be turned on at a given time and I believe this application gathers it's information from the client PC.  One possible solution I see is parsing the data from our domain controllers Security Logs / Successful Logons however
    this is proving to be a challenge. Any suggestions?  
    Thanks,
    Chris

    Hi Chris,
    I was recently tasked with creating a list of user accounts and the computer in which they logged onto.
    I believe we can achieve this goal using software.
    There is no built-in tool to complete this task.
    However, we can configure event log trigger to send email when specific logon events are generated.
    Here are some related articles below for you:
    Getting event log contents by email on an event log trigger
    http://blogs.technet.com/b/jhoward/archive/2010/06/16/getting-event-log-contents-by-email-on-an-event-log-trigger.aspx
    Send an email when an event is logged
    http://blogs.iis.net/rickbarber/archive/2012/10/26/send-an-email-when-an-event-is-logged.aspx
    Best Regards,
    Amy
    Please remember to mark the replies as answers if they help and un-mark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Remove permissions for a security group for all files and folders in a folder and all subfolders?

    I found a script that adds rights to files and folders.
    We need to grant administrators rights to a set of folders for a specific project.
    ChangePermissions.ps1
    # CACLS rights are usually
    # F = FullControl
    # C = Change
    # R = Readonly
    # W = Write
    $StartingDir=
    "C:\Users"
    $Principal="Administrators"
    $Permission="F"
    $Verify=Read-Host `n "You are about to change permissions
    on all" `
    "files starting at"$StartingDir.ToUpper() `n "for security"`
    "principal"$Principal.ToUpper() `
    "with new right of"$Permission.ToUpper()"."`n `
    "Do you want to continue? [Y,N]"
    if ($Verify -eq "Y") {
    foreach ($file in $(Get-ChildItem $StartingDir -recurse)) {
    #display filename and old permissions
    write-Host -foregroundcolor Yellow $file.FullName
    #uncomment if you want to see old permissions
    #CACLS $file.FullName
    #ADD new permission with CACLS
    CACLS $file.FullName /E /P "${Principal}:${Permission}" >$NULL
    #display new permissions
    Write-Host -foregroundcolor Green "New Permissions"
    CACLS $file.FullName
    When the project is over, we need to undo the changes and remove administrators permissions from the same group of folders.
    How do we change the script to remove administrators group members instead of adding?

    I'm not sure I understand how to use that example script to undo the changes in the script I posted..
    Is there  a way to just change a few lines in the first script so that it removes instead of adding the administrators group?
    This line appears to be the line that adds permissions:
    #ADD new permission with CACLS
    CACLS $file.FullName /E /P "${Principal}:${Permission}" >$NULL
    What would be the syntax to remove the  permissions
    $Principal="Administrators"
    $Permission="F"
     from files and folders in $StartingDir= "C:\Users"
    and everything below it?

  • TS2446 I forgot my security ? Answers for my log what do I do next

    I forgot my security ? Answers for my log what can I do next

    If you have a rescue email address set up on your account then you can try going to https://appleid.apple.com/ and click 'Manage your Apple ID' on the right-hand side of that page and log into your account. Then click on 'Password and Security' on the left-hand side of that page and on the right-hand side you might see an option to send security question reset info to your rescue email address.
    If you don't have a rescue email address set up then go to Express Lane  and select 'iTunes' from the list of 'products' in the middle of the screen.
    Then select 'iTunes Store', and on the next screen select 'Account Management'
    Next choose 'iTunes Store Account Questions' or 'iTunes Store account security' (it appears to vary by country) and fill in that you'd like your security questions/answers reset.
    You should get an email reply within about 24 hours (and check your Spam folder as well as your Inbox).
    Or you could see if the second half of Kappy's reply in this thread helps : https://discussions.apple.com/message/20357006#20357006

  • I registered on icloud from my gmail and now when i log on icloud and type password its say your account is been blocked for security reasons.when i reset be email its just send on email but wich email i dont remember.i have @icloud email pls help

    (https://iforgot.apple.com i registered on icloud from my gmail and now when i log on icloud and type password its say your account is been blocked for security reasons.when i reset be email its just send on email but wich email i dont remember.i have @icloud email pls help

    drop the CAPS thats rude.
    iforgot.apple.com there is a link for find my apple id click here
    https://iforgot.apple.com/appleid?language=US-EN&returnURL=https://appleid.apple .com/cgi-bin/WebObjects/MyAppleId.woa&app_id=93&app_type=ext
    Peace, Clyde

  • Why is my Apple ID being locked out every time I go to use it?  I haven't even attempted to log in for about 4 or 5 days, but today on my first attempt to do so, it said my account had been locked for security reasons.  This is the third time.

    I only sign in to iTunes' store about once a week or so.  But during each of my last 3 attempts (on different days, several days apart) on my first attempt to enter my password and hit submit, I am immediately told that my Apple account has been locked for security reasons and it wants to take me to a page to reset my 'forgotten' password.  I am using the CORRECT password.
    Perhaps someone else is trying to break into my account or is mis-entering theirs but my account should not be getting locked like this.  It is very frustrating to have to go through the reset password procedure each and every time I want to go into the store.  It seems to me that Apple really doesn't want me to buy any more apps from them as they keep refusing me entry into my own account, each and every time I have tried to use it, for the past few weeks.  I am not their best customer, but they aren't giving me much of a welcome invitation to become one, if I'm going to be treated like this.
    I just bought my iPhone 4 less than 2 months ago.  I paid extra money to upgrade early, just to get this phone because it was so highly recommended by everyone I spoke with in different stores (BestBuy and Verizon).  I even bought the 2 year upgrade to my Apple services in case I needed to ever call them, and so far I haven't had to, yet.  But I definitely will call them if this isn't straightened out.
    It looks like this other user could be tracked and an email could be sent to them from Apple to let them know what they are doing - trying to sign into the wrong account, and are locking somebody else out of their own account because of their error....and to remind them of their correct information or how to get it and to write it down or save it somewhere so they don't keep on doing this.
    I have seen literally DOZENS of other people in these discussions with exactly the same issue that I'm having so it is NOT an isolated incident, and it seems to be a growing problem as Apple's sales and user base continues to grow, so this problem is seriously needing to be addressed in some way, and soon, before they start losing new customers because of it.  If I was still within my original 14 day return period with this phone, I would definitely be returning it and buying an Android model because of how frustrating this is to me.  If my bank was doing this to me, I'd have already switched banks by now if they hadn't fixed it - just to give an example of how I feel about this.

    For what it's worth, you posted this in 2011, and here in 2014 I am still having this same issue. Over the last two days, I have had to unlock my apple account 8 times. I didn't get any new devices. I haven't initiated a password reset. I didn't forget my password. I set up two factor authentication and have been able to do the unlocking with the key and using a code sent to one of my devices. 
    That all works.
    It's this having to unlock my account every time I go to use any of my devices. And I have many: iMac, iPad, iPad2, iPad mini, iPhone 5s, iPod touch (daughter), and my old iPhone 4 being used as an ipod touch now.  They are all synced, and all was working just fine.
    I have initiated an incident with Apple (again) but I know they are just going to suggest I change my Apple ID. It's a simple one, and one that I am sure others think is theirs. I don't want to change it. I shouldn't have to. Apple should be able to tell me who is trying to use it, or at least from where.
    Thanks for listening,
    Melissa

  • Update so that all apps are registered to my current apple ID from an email that is no longer valid. When I try and log into the old Apple ID I am told it has been 'locked for security reasons'

    I have a very old apple ID that was used to install some of my first apps that I still use today such as Whats App. I cannot install updates for these apps because my apple ID is no longer operational and when I try and reset this apple ID I get an error message saying this apple ID has been blocked for security reasons. NB. I cannot reset using email verification as the email doesnt exist anymore and when I tried inputing my security questions I couldn't get past my birth questions and then got "you have too many failed attempts at verification...so this apple ID has been blocked".

    The old Apple ID apps cannot be transferred to the new ID so you would be best to delete and download new.
    For lockout issues with the Apple ID contact the store support staff at http://www.apple.com/emea/support/itunes/contact.html
    For security questions reset, contact the country support number from http://support.apple.com/kb/HE57 and ask to speak with the Account Security Team.

Maybe you are looking for

  • How to change the font size and style on run time

    dear all i try to change the font style and font size on runtime. I did the following: 1- i created an item(:font_size) in which i will write the size of the font for the the other item ('customer_name') 2 on the post_change trigger for 'font_size' i

  • MSVCR100D.dll was not found

    Hi, I created a simple dll using Visual C++ following this tutorial: http://decibel.ni.com/content/docs/DOC-1690 I got it to run in labview on my laptop which runs Labview 2010 on Windows 7; however, I can not get it to run on my other machine which

  • Muse got even worse.

    We can't work on our website for last 3 month. Muse gets worse and worse after each major update. I was trying to make simple change in text and republish. Unfortunately i can't save my changes, every step is terribly slow. I wonder if Adobe will be

  • Bad HLP is created on compile

    When I compile my project as WinHelp 4, i get an HLP file with zero bytes. I cannot figure out what I am doing wrong or what is wrong here. Anyone else run into this issue? Thanks in advance. Chris

  • Inital configuration not saving in WLC 5508

    Hi Team, We having some issue with the wlc 5508 after configuring the initial setup it saved and ask for reboot but after it reboots again it is asking for the initial configuration again. It is repeating the same Please help on this issue. Regards,