|
RSS Feed - WebSphere MQ Support
|
RSS Feed - Message Broker Support
|
 |
|
SETMQAUT getting a AMQ7026 - used to work |
« View previous topic :: View next topic » |
Author |
Message
|
vivica12 |
Posted: Thu Apr 03, 2008 7:16 am Post subject: SETMQAUT getting a AMQ7026 - used to work |
|
|
Acolyte
Joined: 13 Jul 2007 Posts: 58
|
I have an AIX 5.3 (TL6sp5) system with MQ6.0.2.1 (+2 efix's). The AIX system uses vintela to extend AD/LDAP to the unix environment. As the local mqm user, I can run an "lsgroup groupname", where the groupname is a vintela/AD group - NOT a local group. This responds properly with the group information.
-This tells me that the user id mqm is able to reference groups from vintela.
Two weeks ago I was able to do setmqaut commands using the vintela groupname, and it worked, I can show that it worked in our OAM backups. We were using these group permissions properly to access MQ.
Now both the setmqaut and the dspmqaut give a
AMQ7026: A principal or group name was invalid
on groups that previously worked, and are already configured with permissions to Q's -- at this point none of our permissions work.
Questions:
1. If the mqm user knows the groups and can view them from a system level, what is the setmqaut doing that might inhibit it knowing about that same group.
2. From the point that it worked to not worked, we restarted the AIX system, does a system reboot do something to reset security.
There is nothing being logged in MQ, or vintela, or system. The AIx support can't see an issue as the groups are obviously availble to the system, just not the MQ QMGRS.
Any ideas?
thanks _________________ Vivica - signing off |
|
Back to top |
|
 |
|
|
 |
|
Page 1 of 1 |
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|
|
|