1. Home
  2. Security Hardening
  3. CIS IBM DB2 V10 V1.1.0 Linux OS L1
  4. Secure permissions for the log mirror location – MIRROLOGPATH OS Permission

Secure permissions for the log mirror location – MIRROLOGPATH OS Permission

Details

The mirrorlogpath parameter specifies the type of media and the location used to store the mirror copy of the logs. It is recommended that the directory used for the mirror copy of the logs be set to full access for DB2 administrator accounts and read and execute only for all other accounts.

Solution

For Windows and Linux-
1. Connect to the DB2 database
db2 => connect to $DB2DATABASE user $USERNAME using $PASSWORD
2. Run the following command from the DB2 command window to change the mirror log directory, if necessary-
db2 => update database configuration using mirrorlogpath
Additional steps for Windows-
1. Connect to the DB2 host
2. Right-click on the primary archive log directory
3. Choose Properties
4. Select the Security tab
5. Grant all DB2 administrator accounts the Full Control authority
6. Grant all other accounts read and execute privileges only (revoke all other privileges)
Additional steps for Linux-
1. Connect to the DB2 host
2. Change to the mirror log directory
3. Change the permissions for the directory
OS => chmod -R 755

Supportive Information

The following resource is also helpful.

This control applies to the following type of system Unix.

References

Source

Updated on July 16, 2022
Was this article helpful?

Related Articles