05-18-2011
IMHO, this is not how it should be. There is no accountability on a system like that.
I undertand, what you are saying about the separate filesysetms.
We run SG and Oracle.
First, users (people) should be logging in to a server with an account that is theirs and only theirs. People should not log into servers as any other user (oracle or root or otherwise). All accounts should be named accounts, there should be no shared accounts.
So, pick a server to host your users (people). Create accounts for every user (real people and application owners [like oracle]) on EVERY server. Make your UIDs and GIDs consistent throughout the whole environment. Lock the users on servers they shouldn't have access to. In fact this could be in a package. You could reuse the LDAP server too (I don't use LDAP).
Use autofs to mount/share users home directories to every server.
>"Therefore people log into packages instead of Host"
You mean, SSH is configured on the package IP? This is ok. I do this sometimes.
10 More Discussions You Might Find Interesting
1. AIX
What would be the best approach to configure one external /home f/s in simple two node config and have concurrent access ? (1 Reply)
Discussion started by: zz2kzq
1 Replies
2. UNIX for Dummies Questions & Answers
I have a script that deletes obselete users from /etc/passwd then moves their home directories to another location. After 30 days, I need to delete the home directories that were moved to the new location. I would appreciate any ideas on how to delete the directories after the 30 days? (2 Replies)
Discussion started by: munch
2 Replies
3. UNIX for Dummies Questions & Answers
Does anyone noe why /home n /packages r usually kept remotely..as in network base by administrators?is it because of security reasons???
thanks. (2 Replies)
Discussion started by: rave77us
2 Replies
4. Solaris
I know that how to backup the home directories in sun sparc server.
Firstly, umount the filesystem,
Secondly, fsck the filesystem,
Thirdly, ufsdump the filesystem.
Anybody know how to type the full command line backup the /home directory? (1 Reply)
Discussion started by: kingsan
1 Replies
5. Solaris
Hi all,
i have one requirement to audit the software packages list in unix server.
For this the i go through #pkginfo command.But there are lot of packages.
i get confused how to find the software packages and root directories paths.
Please let me know whether i am going correct way... (1 Reply)
Discussion started by: krishna176
1 Replies
6. Shell Programming and Scripting
I need to rename a directory in every home directory on a given workstation. I am a newb to scripting so maybe thats why I cant exactly figure out how to correctly do this.
The first thing I need to be able to do to write this script is figure out how to list all the directorys (these are not... (11 Replies)
Discussion started by: trey85stang
11 Replies
7. UNIX for Dummies Questions & Answers
Hi All,
Could someone help, am a complete beginner when it comes to UNIX. However I have been tasked with investigating automatic creation of UK unix home directories.
Is someone able to help?
Thanks in advance! (7 Replies)
Discussion started by: zainster
7 Replies
8. Shell Programming and Scripting
Hi, i was looking at a unix paper i found and one of the tasks was to create a file called 'usernames' that contains a list of all directories in /home. This file should be located in the /home/userinfo directory.
How would i go about doing this without changing directories from the home... (2 Replies)
Discussion started by: warlock129
2 Replies
9. UNIX for Dummies Questions & Answers
greetings. I'm using debian lenny, bash shell environment.
It is my understanding that by default, the useradd command should create subdirectories under the /home directory, with the same name as the user being created, but this is not happening.
I checked useradd -D and it showed, among... (2 Replies)
Discussion started by: fguy
2 Replies
10. Solaris
I've allocated /exports for all user directories by making separate directories under /exports.....
:rolleyes:
now i need to unmount /exports . But i'm unable to do that..
How can i troubleshoot this issue.
Thanks in advance:D (2 Replies)
Discussion started by: vamshigvk475
2 Replies
ftpshut(1) General Commands Manual ftpshut(1)
NAME
ftpshut - create shutdown message file to shut down the ftp servers at a given time
SYNOPSIS
time [ warning-message ... ]
DESCRIPTION
The command provides an automated shutdown procedure that a superuser can use to notify ftp users when the ftp server is shutting down.
This command will create a shutdown message file in the path specified by the 'shutdown' directive in the file in the real, anonymous and
virtual user accounts. For guest accounts the system administrator must copy the message file created in the real user account to the
guest accounts manually. The server will check this file regularly to see if the server is going to be shut down.
This option causes the program to display copyright and version information,
then terminate.
This option is used as deny_offset. New FTP access is disabled 'min' minutes before
shutdown. The default value of 'min' is 10 minutes. This value can be reset by the user.
This option is used as disc_offset. All current FTP connections will be dropped 'min'
minutes before shutdown. The default value of 'min' is 5 minutes. This value can be reset by the user.
time time, is the time at which the ftp server will be shutdown. If is set to the word `now' the shutdown will be immedi-
ate. time can also be set to a future time. Future time can be specified in one of the two formats: + number or
HHMM. The first format brings the ftp servers down in number minutes. The second format brings the ftp servers down
at the time of day indicated, using a 24-hour clock format.
warning-message
The warning-message is the message the server will flash to its clients on shut down. The user can use a message of
his choice or use the 'macros' or 'magic cookies' that are available. The server will replace the macro with the
specified text string. The warning-message will be formatted to be 75 characters long, including the length of any
expanded macros ("magic cookies"). The default warning message is "System shutdown at %s". The following magic cook-
ies are available:
%s time system is going to shut down
%r time new connections will be denied
%d time current connections will be dropped
%C current working directory
%E the maintainer's email address as defined in ftpaccess
%L local host name
%M maximum allowed number of users in this class
%N current number of users in this class
%R remote host name
%T local time (form Thu Nov 15 17:12:42 1990)
%U username given at login time
WARNINGS
You can kill the servers only between now and 23:59, if you use the absolute time for
EXIT STATUS
returns:
0 successful
1 failure
-1 the wrong parameter was passed to
AUTHOR
was developed by the Washington University, St. Louis, Missouri.
SEE ALSO
ftpaccess(4)
ftpshut(1)