• Subject: Re: Electronic Signatures
  • From: John Earl <johnearl@xxxxxxxxxxxxxxxxxx>
  • Date: Sun, 19 Sep 1999 06:43:05 -0700
  • Organization: The PowerTech Group

Both WRKUSRPRF and WRKOBJ only show those profile objects that you already have
*USE authority to.  If you're not an *ALLOBJ user you won't see most user
profiles.

However, any profile that you can _see_, you can become.   The API's do not
require that you supply a password if you have *USE authority to the profile.
So a logical approach would be to swap to every profile that you have use
authority to and then run the WRKUSRPRF command and see what preofiles it had
authority to, etc. etc. etc.

jte

Rob Berendt wrote:

> WRKUSRPRF to an outfile seems to be restricted to certain
> users.  However, the WRKOBJ *ALL *USRPRF is ready to rock and roll.
>
> Don.Schenck@WL.com on 09/16/99 01:50:39 PM
> Please respond to MIDRANGE-L@midrange.com@Internet
> To:     MIDRANGE-L@midrange.com@Internet
> cc:
> Fax to:
> Subject:        RE: Electronic Signatures
>
> Cool ... that means one could create a REALLY COOL program:
>
> It keeps calling the API with different user names until all of the users
> are disabled!
>
> A MAJOR pain for the sysadmin!
>
> So HOW does one go about getting a list of users????
>
> -- Don
>
> -----Original Message-----
> From: Bob Crothers [mailto:bob@cstoneindy.com]
> Sent: Thursday, September 16, 1999 10:55 AM
> To: 'MIDRANGE-L@midrange.com'
> Subject: RE: Electronic Signatures
>
> Rob,
>
> As shipped, run time access to these API's is restricted.  And of
> course, before you can even use it, you must a) have a program and b)
> beable to execute the program.
>
> So...it would only help if you already have access to the system you
> are trying to get into...actually, quite a bit of access.
>
> BTW, the Get Profile Handle DOES disable the profile after the max
> number of signon attempts has been exceeded.  I just tested it (V3R7
> system).
> +---
> | This is the Midrange System Mailing List!
> | To submit a new message, send your mail to MIDRANGE-L@midrange.com.
> | To subscribe to this list send email to MIDRANGE-L-SUB@midrange.com.
> | To unsubscribe from this list send email to MIDRANGE-L-UNSUB@midrange.com.
> | Questions should be directed to the list owner/operator: david@midrange.com
> +---
>
> +---
> | This is the Midrange System Mailing List!
> | To submit a new message, send your mail to MIDRANGE-L@midrange.com.
> | To subscribe to this list send email to MIDRANGE-L-SUB@midrange.com.
> | To unsubscribe from this list send email to MIDRANGE-L-UNSUB@midrange.com.
> | Questions should be directed to the list owner/operator: david@midrange.com
> +---



--
John Earl                                           johnearl@powertechgroup.com
The PowerTech Group                        206-575-0711
PowerLock Network Security              www.400security.com
The 400 School                                www.400school.com
--


+---
| This is the Midrange System Mailing List!
| To submit a new message, send your mail to MIDRANGE-L@midrange.com.
| To subscribe to this list send email to MIDRANGE-L-SUB@midrange.com.
| To unsubscribe from this list send email to MIDRANGE-L-UNSUB@midrange.com.
| Questions should be directed to the list owner/operator: david@midrange.com
+---

This thread ...

Follow-Ups:
Replies:

Follow On AppleNews
Return to Archive home page | Return to MIDRANGE.COM home page

This mailing list archive is Copyright 1997-2019 by midrange.com and David Gibbs as a compilation work. Use of the archive is restricted to research of a business or technical nature. Any other uses are prohibited. Full details are available on our policy page. If you have questions about this, please contact [javascript protected email address].