In most cases, the prof_attr map is created from the /etc/security/prof_attr file. A typical line looks like this:


For example:

all:::Execute any command as the user:help=AllRights.html
guest:RO::Allow read-only:audit-flags=all:project=web

If you create a prof_attr map in Active Directory, you must include the key as part of the value. For example:

  • Key: all
  • Value: profile name and properties followed by attributes defined as key and value pairs for the profile:
    all:::Execute any cmd as user or role:help=All.html

This map is only applicable for Solaris.