06-23-2008
As I understand it, local GUI login is required by the same user that is issuing the command.
So if Joe is using the machine, and someone either makes Joe run the command (trojan), or someone else is logged into the terminal as Joe then the command will work.
Anyway, there are a couple of things you can do to plug this hole (or make it much smaller).
You can remove the setuid bit from the executable, tar or remove the ARD product entirely, or if you require ARD for whatever reason (server access...) you can change privileges on the osascript executable to at least restrict who can run the command unchallenged.
Some options.
5 More Discussions You Might Find Interesting
1. UNIX for Dummies Questions & Answers
Hello,
on Solaris 5.8 I've installed SunMgtCenter to get the time agent;
it's under /opt/SUNWsymon/sbin/es-start -a
it's in ps -ef | grep agent
...but it doesn't work; the machine is always in alarm cause the time is different of the clock server;
is it clear enough ?
tks
cc (0 Replies)
Discussion started by: Carmen123
0 Replies
2. IP Networking
Hi,
I am really new in linux and SNMP.
I have a SNMP agent in Linux (net-snmp). I have my MIB
in the /usr/share/mibs directory, and I didn't manage to understand where and how do I put the values of the fields in the MIB? The values are static, so the agent need to return the same value in... (0 Replies)
Discussion started by: linuxbegginer
0 Replies
3. UNIX for Dummies Questions & Answers
Hi,
Please can someone explain me about the " perform agent " on UNIX .
Thanx (1 Reply)
Discussion started by: reply2soumya
1 Replies
4. UNIX for Dummies Questions & Answers
Hi all,
I'm new to vcs. I have a doubt. I need to know, what will happen if an agent is stopped while reources being online. Eg.. while the oracle agent is stopped, will all the oracle resources will become offline..
Advanced thanks (1 Reply)
Discussion started by: sunshine12
1 Replies
5. Solaris
Client has got a few machines with logical domains on.
But I can't see the the ovs-agent service?
Quite possibly I guess this has been set up with just logical domains. With no agent.
Do you need to use the agent only if planning to manage with OV Manager? (6 Replies)
Discussion started by: psychocandy
6 Replies
LEARN ABOUT CENTOS
pmdaelasticsearch
PMDAELASTICSEARCH(1) Performance Co-Pilot PMDAELASTICSEARCH(1)
NAME
pmdaelasticsearch - elasticsearch performance metrics domain agent (PMDA)
DESCRIPTION
pmdaelasticsearch is a Performance Metrics Domain Agent (PMDA) which exports metric values from elasticsearch.
INSTALLATION
This PMDA requires that elasticsearch is running on the local host and is accepting queries on TCP port 9200
Install the elasticsearch PMDA by using the Install script as root:
# cd $PCP_PMDAS_DIR/elasticsearch
# ./Install
To uninstall, do the following as root:
# cd $PCP_PMDAS_DIR/elasticsearch
# ./Remove
pmdaelasticsearch is launched by pmcd(1) and should never be executed directly. The Install and Remove scripts notify pmcd(1) when the
agent is installed or removed.
FILES
$PCP_PMDAS_DIR/elasticsearch/es.conf
optional configuration file for pmdaelasticsearch
elasticsearch PMDA for PCP
$PCP_PMDAS_DIR/elasticsearch/Install
installation script for the pmdaelasticsearch agent
$PCP_PMDAS_DIR/elasticsearch/Remove
undo installation script for the pmdaelasticsearch agent
$PCP_LOG_DIR/pmcd/elasticsearch.log
default log file for error messages from pmdaelasticsearch
SEE ALSO
pmcd(1).
3.8.10 Performance Co-Pilot PMDAELASTICSEARCH(1)