The UNIX and Linux Forums  
Hello and Welcome from United States to the UNIX and Linux Forums! Thank You for Visiting and Joining Our Global Community.

Go Back   The UNIX and Linux Forums > Operating Systems > HP-UX
.
google unix.com



HP-UX HP-UX (Hewlett Packard UniX) is Hewlett-Packard's proprietary implementation of the Unix operating system, based on System V.

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Bastille: classic Linux and Unix security - Help Net Security iBot UNIX and Linux RSS News 0 10-09-2007 08:40 AM
Unix Security norsk hedensk Security 8 05-01-2007 07:51 PM
Unix Security Alerts cbalemba Security 4 05-25-2006 05:55 PM
UNIX Security Question OBCCBIP UNIX for Dummies Questions & Answers 3 08-09-2004 06:02 PM
Unix Security DuttO UNIX Desktop for Dummies Questions & Answers 1 03-22-2002 12:41 PM

Closed Thread
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
  #1 (permalink)  
Old 11-25-2003
breigner breigner is offline
Registered User
  
 

Join Date: Nov 2003
Posts: 21
unix security

Was wondering if anyone could answer two quick questions... 1) What is the best way to impliment password triviality checking and also checking to make sure a user does not use the same password twice. 2) is there any nice software out there to manage users on multiple machine as far as security and accounts. Both questions are for HP UX

Thanks
Brian
  #2 (permalink)  
Old 11-25-2003
norsk hedensk norsk hedensk is offline Forum Advisor  
Registered User
  
 

Join Date: Jul 2002
Location: new york
Posts: 1,025
try a search on freshmeat.net. i found this, though it may not be exaclty what you want, something you do want should be there.

http://freshmeat.net/projects/p-sync...50%2C253%2C861

damn a network security related post and its not in my forum i never get to moderate!
  #3 (permalink)  
Old 11-26-2003
cbkihong cbkihong is offline Forum Advisor  
Advisor
  
 

Join Date: Sep 2002
Location: Hong Kong, China
Posts: 1,624
Try "John the Ripper" (http://www.openwall.com/john/)
  #4 (permalink)  
Old 12-29-2003
Kelam_Magnus's Avatar
Kelam_Magnus Kelam_Magnus is offline Forum Advisor  
Registered User
  
 

Join Date: Aug 2001
Location: DFW McKinney, TX,
Posts: 1,069
On HPUX, actually if you do a man on "security"... you can create a file called /etc/default/security and edit it with the parameters you desire in the manpage ...

it shows how you can implement passwd depth security and passwd length security as well as minimum length...




PASSWORD_HISTORY_DEPTH=N A new password is checked
against only the N most recently used passwords for a
particular user.

A configuration of password history depth of 2 prevents
users from alternating between two passwords. The
maximum password history depth supported is 10 and the
minimum password history depth supported is 1. A depth
configuration of more than 10 will be treated as 10,
and a depth configuration of less than 1 will be
treated as 1.
  #5 (permalink)  
Old 01-06-2004
denisJ denisJ is offline
Registered User
  
 

Join Date: Dec 2003
Location: paris_france
Posts: 5
i don't know the answer for the second question but for the first it's in base configuration if you trust your system by the parameter passwd_history
  #6 (permalink)  
Old 01-13-2004
fpmurphy's Avatar
fpmurphy fpmurphy is offline Forum Staff  
Moderator
  
 

Join Date: Dec 2003
Location: Florida
Posts: 1,913
Re part 2 of your question ...

NIS or NIS+ can handle user authentication and
accounts.

- F
  #7 (permalink)  
Old 01-13-2004
kduffin's Avatar
kduffin kduffin is offline Forum Advisor  
UN1X
  
 

Join Date: Nov 2003
Location: Maryland
Posts: 449
Are you running you HPUX systems in Trusted mode? (just curious)

NIS+ would work, but I've tended to steer away from Yellow Page systems in favor of Secure LDAP for centralized user administration. You can couple both with Kerberos for an even tighter rein. If you use sudo (or RBAC), you can also integrate rights management with LDAP - something that lends itself to a nice automated firecall system.

As for password policies etc. There are (and always will be) numerous debates on how much is too much. If you make it too complicated, you are bound to have users writing their passwords down (and placing them under their keyboards).

Cheers,

Keith
Closed Thread

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 05:46 AM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0