BookmarkSubscribeRSS Feed
🔒 This topic is solved and locked. Need further help from the community? Please sign in and ask a new question.
woo
Barite | Level 11 woo
Barite | Level 11

Hello, 

 

what could be the gid for sas user? is it require that sas user need sas group as its GID? We have users in LDAP. can someone please provide an example, how it should be when deploying viya 3.5 on Linux?

1 ACCEPTED SOLUTION

Accepted Solutions
jcFranklin
SAS Employee

If you are using a multi-tenant Deployment the provider users must be a member of the sas group. 

 

If you are not using multi-tenant deployment, then the requirement is that a user's UID and GID are the same across all of the servers. 

Also to note, that if you choose to not assign the user to the sas group and they need to run a compute server session (like when running SAS Studio V) then you need to make sure the permissions are open for others to write to the compsrv logs directory.

 

All of the service accounts out of the box will be members of the SAS group as well (like sas and cas).

From the documentation "User Accounts (Reference)":

The sas group is intended to allow access to administrative features, such as logs and backup. It is the group owner of many files on disk. Restrict membership in this group to administrators.

 

Here is the documentation regarding User and Group Requirements: https://go.documentation.sas.com/doc/en/calcdc/3.5/dplyml0phy0lax/n15hhewllr5ji2n1sxf96imqvtpj.htm 

 

I hope this helps! 🙂 

View solution in original post

4 REPLIES 4
Sajid01
Meteorite | Level 14

Well when a user is created on a unix/linux machine, he has a user id or uid. Similarly every group has an id that is gid.

This is a feature of operating system.

 

woo
Barite | Level 11 woo
Barite | Level 11

yes, but does users really require to have sas group as its GID?

 

Sajid01
Meteorite | Level 14

Every group in Unix by default has a GID. There cannot be a group without GID.

jcFranklin
SAS Employee

If you are using a multi-tenant Deployment the provider users must be a member of the sas group. 

 

If you are not using multi-tenant deployment, then the requirement is that a user's UID and GID are the same across all of the servers. 

Also to note, that if you choose to not assign the user to the sas group and they need to run a compute server session (like when running SAS Studio V) then you need to make sure the permissions are open for others to write to the compsrv logs directory.

 

All of the service accounts out of the box will be members of the SAS group as well (like sas and cas).

From the documentation "User Accounts (Reference)":

The sas group is intended to allow access to administrative features, such as logs and backup. It is the group owner of many files on disk. Restrict membership in this group to administrators.

 

Here is the documentation regarding User and Group Requirements: https://go.documentation.sas.com/doc/en/calcdc/3.5/dplyml0phy0lax/n15hhewllr5ji2n1sxf96imqvtpj.htm 

 

I hope this helps! 🙂 

suga badge.PNGThe SAS Users Group for Administrators (SUGA) is open to all SAS administrators and architects who install, update, manage or maintain a SAS deployment. 

Join SUGA 

Get Started with SAS Information Catalog in SAS Viya

SAS technical trainer Erin Winters shows you how to explore assets, create new data discovery agents, schedule data discovery agents, and much more.

Find more tutorials on the SAS Users YouTube channel.

Discussion stats
  • 4 replies
  • 1346 views
  • 4 likes
  • 3 in conversation