Do the CA XCOM for UNIX inetd.conf entries really need to specify "root" for xcomtcp?

Document ID : KB000052292
Last Modified Date : 14/02/2018
Show Technical Document Details

Description:

CA XCOM for UNIX is designed and implemented to run under effective "root" userid. Any change or reconfiguration of this is not supported.

Solution:

The xcomtcp process is started as root and verifies the userid and password of incoming transfers. If they are correct, the process is switched to the userid to run the transfer. If the xcomtcp permissions are changed, switching to the incoming userid would fail, so the transfers would fail.

This is the correct definition:

txpi stream tcp nowait root /usr/lib/xcom/xcomtcp xcomtcp REMOTE 0txpis stream tcp nowait root /usr/lib/xcom/xcomtcp xcomtcp REMOTE 0 SSL