07-25-2008
10 More Discussions You Might Find Interesting
1. UNIX for Dummies Questions & Answers
Hi!
I am trying to get info/best practices/how-to harden unix,
especially solaris!
Appreciate any leads please..................... (3 Replies)
Discussion started by: sdharmap
3 Replies
2. Solaris
So I've just done my first install of Solaris. I installed it on an x86 system and am now in the processing of figuring out what I need to do to 'harden' it. I've got the Security kit downloaded (jass) but I am not sure what to do with the .tar file.
I can't seem to find any easy steps to... (6 Replies)
Discussion started by: flood
6 Replies
3. UNIX for Dummies Questions & Answers
As per Hardening guide for the server.
ICMP Broadcast Response: The kernel parameter icmp_echo_ignore_broadcasts must match to 1
However when i check the value of icmp_echo_ignore_broadcasts it thrown an error as unkonwn key.
# sysctl icmp_echo_ignore_broadcasts
error:... (2 Replies)
Discussion started by: pinga123
2 Replies
4. Solaris
Hi guys,
Is there any script or program which i can use to verify that my hardening setting is all correct ? Recently i am given a task to make sure my Sun servers are all harden properly though sunjass was already introduced. I need to generate a report to convince my manager that the settings... (0 Replies)
Discussion started by: ahlude
0 Replies
5. SuSE
Currently we are hardening our Solaris server using the Sun provided Jass Security tool kit.
How Can I implement the same security level on SUSE11 SP1?
Are there any tools similar/equivalent to Jass for SUSE11 SP1?
Tanks and Regards (1 Reply)
Discussion started by: vcfko
1 Replies
6. UNIX for Advanced & Expert Users
We've got a FTP server that's open to the public network and its running on Suse SUSE Linux Enterprise Server 11 (x86_64) SP2
Now, since it's an FTP server I can't disable that service, but how else do I harden this server from attacks from outside?
I am thinking of disabling the firewall and... (3 Replies)
Discussion started by: hedkandi
3 Replies
7. Solaris
Hi,
Where I could find information about "Jass hardening" for Solaris10?
Because, I change the /opt/SUNWjass/Files/etc/syslog.conf file. But yet I don't know if I must restart the jass (and how?) or I must to copy /opt/SUNWjass/Files/etc/syslog.conf to /etc/syslog.conf?
Thanks for your... (2 Replies)
Discussion started by: hiddenshadow
2 Replies
8. Cybersecurity
Does anyone have any experience hardening the c-icap.conf file? Here is the default config file, it has a lot of options; sorry about how long it is. I have removed some entries that were not needed as well, but it is still so long :D. Any help is much appreciated as I have never dealt with ICAP.
... (0 Replies)
Discussion started by: savigabi
0 Replies
9. Linux
Hi
We have a requirement to vary the minimum password criteria by the group to which a user belongs.
For example a standard user should have a password with a minimum length of 12 and containing a mix of characters whereas an administrator should have a password with a minimum length of 14... (1 Reply)
Discussion started by: gregsih
1 Replies
10. HP-UX
Hi,
The standard accounts that are created during the HP-UX installation, eg, bin,adm,daemon,uucp,lp,hpdb and nobody have their own shell.
Will there be any impact if we change these user's shell to /bin/false?
Like processes get interrupted, files cannot be generated, etc.
Regards (3 Replies)
Discussion started by: anaigini45
3 Replies
LEARN ABOUT HPUX
rpccp_show_group
show group(1m) show group(1m)
NAME
show group - Shows the members of a group
SYNOPSIS
rpccp show group group-entry-name [-m member] [-r [ integer]] [-s syntax] [-u]
OPTIONS
Declares the name of a single group member. Indicates that the show group operation recurses. If any members of a group are also groups,
their entries are shown. By default, the -r option causes the show group operation to recurse until all nested groups are expanded; for
example, -r shows the members of the specified group and all nested groups.
You can limit recursion to one or more levels by specifying a decimal integer as part of the -r option. For example, -r 1 shows the members
of the specified group and, for members that are groups, the command also shows their members; then recursion stops.
Without the -r option, only the members of the specified group are shown. Indicates the name syntax of the entry name (optional). The only
value for this option is the dce name syntax, which is the default name syntax. Until an alternative name syntax becomes available, speci-
fying the -s option is unnecessary. Updates the local CDS cache copy of name service data (optional).
Name service data is cached locally on each machine in a cell. If an rpccp inquiry can be satisfied by data in the local CDS cache, this
cached data is returned. Locally cached copies of name service data might not include a recent CDS update, however. If the required data
is not available in the local CDS cache, rpccp goes to a CDS server(s) to retrieve the required data. rpccp then updates the local CDS
cache.
Using the -u option bypasses the local cache, allowing rpccp to go directly to a CDS server for the inquiry. rpccp then updates the local
CDS cache.
ARGUMENTS
Indicates the name of the target group. For an entry in the local cell, you can omit the cell name and specify only the cell-relative
name.
DESCRIPTION
The show group command shows the members of a group in the name service database. The entry name of the group is required. Unless it is
limited to a specific member (by the -m option), the show group command shows all members. The command shows only the members in the spec-
ified group; the -r option enables you to show members of nested groups.
Privilege Required
You need read permission to the CDS object entry (the target group entry). If you use the -r option, you also need read permission to any
nested groups.
NOTE
This command is replaced at Revision 1.1 by the dcecp command and may not be provided in future releases of DCE.
EXAMPLES
The following example shows all the members of the group /.:/LandS/anthro/Calendar_group, in the order in which they were added to the
group: $ rpccp rpccp> show group /.:/LandS/anthro/Calendar_group The following command operates from the system prompt to show a specific
member of the group /.:/LandS/dept/Calendar_group: $ rpccp show group > -m /.:/LandS/anthro/Cal_host_2 > /.:/LandS/anthro/Calen-
dar_group
RELATED INFORMATION
Commands: add member(1m), remove group(1m), remove member(1m)
show group(1m)