Sponsored Content
Full Discussion: User account logging
Top Forums UNIX for Dummies Questions & Answers User account logging Post 302598896 by Corona688 on Wednesday 15th of February 2012 04:23:33 PM
Old 02-15-2012
Don't bump posts. We are not "on call". If you don't get an answer immediately, wait!

Quote:
Originally Posted by oraclermanpt
we have multiple users having access to orapps. anyone can change permissions
You can grant them read and write access even if they're not the owner. Not being the owner would prevent them from chmod-ing it.

Of course, if they have write access, they never needed chmod, because they can write to it. If they have access to a file and have shell access, they have access to a file and have shell access. This is why giving 9 people the same shell account is a bad idea...

Quote:
I think script in bash_profile might work.
Nothing would stop them from killing script and falsifying its results. If they have access to their files and processes, they have access to their files and processes. This is why giving 9 people the same shell account is a bad idea...

Do they truly need shell access to this account? Might they just need the ability to do a few very specific things as this user? You could limit them with sudo. Only allow a few specific users to run your very own wrapper script under this user, a wrapper script which records and formats their input in whatever way you like. This would let you control which users get to run it, too, without having to give them all the same password. You'd be able to track which users were running it when, too. You may even be able to do it seamlessly with an alias.

Last edited by Corona688; 02-15-2012 at 05:40 PM..
 

10 More Discussions You Might Find Interesting

1. UNIX for Advanced & Expert Users

User logging log

Hi, Does anybody knows is there a way or how to records user logging record? thanks in advance (4 Replies)
Discussion started by: jennifer
4 Replies

2. Solaris

Tracing a user and logging his actions

Dear All, I want to enable the tracing for a user and logging all things he do in a log file.......... Thaaanks (2 Replies)
Discussion started by: adel8483
2 Replies

3. HP-UX

Issue with user logging in to HP UX Server

Hi, I wonder if anyone is able to assist me. I have a HP UX server and some HP UX workstations that has been migrated from another network. I have changed the IP Addresses and everything seems to be working fine. However, the users are complaining that they are unable to login to the UX... (1 Reply)
Discussion started by: michaelgim
1 Replies

4. UNIX for Dummies Questions & Answers

Difference between : Locked User Account & Disabled User Accounts in Linux ?

Thanks AVKlinux (3 Replies)
Discussion started by: avklinux
3 Replies

5. AIX

Logging user logins

I want to know how I can turn off and turn on login logging. We have a server that appears to have stopped logging user logins. Running the who command shows nothing and the last command shows no logins for a month. The var/adm/wtmp file isn't full and there is plenty of space in the var file... (2 Replies)
Discussion started by: daveisme
2 Replies

6. UNIX for Dummies Questions & Answers

How to avoid logging with root user?

I have created a linux machine and installed some softwares on it with root user privileges . I used to login with root user credentials for doing the various task. Later i have realise that this is not the best practice to follow and there should be a new user with less privileges to be created... (1 Reply)
Discussion started by: pinga123
1 Replies

7. Shell Programming and Scripting

Logging in unix account taking password from a parameter file

Hi All, I am writing a script where it updates a file in an unix account. To update that file i need to be logged in as that account user. say account name is ab01 and its password is passab01. What i want to do is, my script should read login id and password from a parameter file and... (4 Replies)
Discussion started by: pkbond
4 Replies

8. UNIX for Advanced & Expert Users

Logging User Sessions

Hello, I am using a Linux server (Ubuntu 11.04 Server) to host some files and a code repository. Because we are using ssh + svn to connect to the repository, our users have normal ssh access. What I would like to do is log their user sessions so that I have an audit trail in the event that... (2 Replies)
Discussion started by: chrisb1609
2 Replies

9. Shell Programming and Scripting

User Logging

Hi, I have several engineers logging into servers with the same system username and passwords eg root. I was thinking about adding a script to bashrc where a user is forced upon login to enter their name and once that has executed there history is logged/redirected to a log file somewhere. I... (10 Replies)
Discussion started by: maxwellhouse
10 Replies

10. Shell Programming and Scripting

Logging in to 100 server to test my account

I have been logging to 100 server everyday to test if I can login to the server. I created a script to ssh-copy-id to every host so next time it will be password less. Now it keeps prompting me Are you sure you want to continue connecting (yes/no)? yes This is normal for first time login.... (2 Replies)
Discussion started by: invinzin21
2 Replies
eurephiadm adminaccess(7)												 eurephiadm adminaccess(7)

NAME
eurephiadm-adminaccess - Access control for eurephia administration features DESCRIPTION
The eurephiadm adminaccess is used to grant eurephia users access to the different administration modules in eurephia. Available modes for the adminaccess command are: -G | --grant Grant a specific access level to a user -R | --revoke Revoke access levels -l | --list List all granted accesses -h | --help <mode> Help about a specific mode LIST MODE
The list mode will show the granted user access levels -i | --uid User account ID -u | --username User name -I | --interface Which interfaces to show (default "C") -a | --access-level Which access level to show GRANT MODE
The grant mode will grant a user access to a specified access level. -i | --uid User account ID -I | --interface Grant access through which interface (default "C") -a | --access-level Which access level to grant access to REVOKE MODE
The revoke mode will remove an access from the desired user accounts. -i | --uid User account ID -I | --interface Revoke access from interface (default "C") -a | --access-level Which access level to revoke access from ACCESS LEVELS
attempts This access level grants access to the eurephiadm attempts command. The attempts command can list, reset or delete login attempts records in the database. blacklist This is similar to the attempts access. It provides access to the eurphiadm blacklist command, where you can list, add or delete blacklisted usernames, certificate digests or IP addresses. certadmin This level is needed to use the eurephiadm certs command. This commands provides you access to list, add or delete certificate information which the eurephia plug-in will use during the authentication process. config This level grants access to the eurephiadm config and eurephiadm show-config commands. The latter command will list out both the eurephiadm config file and all configuration parameters in the database. The config command is used to set or delete configuration parameters in the database. fwprofiles This access level is needed to list, add or delete firewall profiles eurephia which may use. useradmin This provides access to the eurephiadm users and eurephiadm usercerts commands, which is used to create or delete user accounts and link the user accounts together with a certificate and a firewall access profile. SEE ALSO
eurephiadm(7) AUTHOR
Copyright (C) 2008-2010 David Sommerseth <dazo@users.sourceforge.net> David Sommerseth July 2010 eurephiadm adminaccess(7)
All times are GMT -4. The time now is 03:30 AM.
Unix & Linux Forums Content Copyright 1993-2022. All Rights Reserved.
Privacy Policy