Network user admin...


 
Thread Tools Search this Thread
Top Forums UNIX for Advanced & Expert Users Network user admin...
# 8  
Old 01-30-2003
Well, since you state that you can't use NIS or NIS+ due to security reasons - how can you expect to write something or get freeware that would have better security? Even ssh has CERT advisories about it every once in a while.

You don't state why you can't use it but not using it I believe opens you up to bigger problems.


I found nothing that really suits what you are looking for - but found/know of somethings that may help...

cfengine - not good for adding users, but for configurations of multiple servers (This product is not to be taken lightly - it was removed from my last company after 42 production servers crashed at the same time due to a bug in how it was set up - realize it's power and it's side effects).

Pconsole - never used it but have used cluster console on Solaris to do the same thing...again, just because you can submit the same command to a few hundred servers should make you stop and think of the possible problems if your typing isn't correct (or syntax....opps, just killed 42 servers at the same time).
# 9  
Old 08-15-2003
forgive the commercial message

I realize that this is a really old thread and the specific problem is probably already solved but I thought I would comment since this is a topic that OSM has been dealing with for years and one that IT analysts are just now becoming aware of.

There are several commerecial products available to streamline the process of managing user accounts. What's more most of these tools allow you to enforce much stricter security measures via role based access control, detailed audit trails and password strengthening (rules/aging etc).

Commercial identity management software is expensive but if you have 5000 user accounts on your network (plus how many more in active directories on the Windows side?) I'd be willing to bet that you are spending a *significant* amount of time doing mundane activities like creating/modifying/deleting user accounts and resetting passwords. Couldn't you find more productive use of that time?

When the CEO says "Why the hell should we spend a boatload of money on identity management?!" It should be easy to prove the return on investment with the increased efficiency and much greater security.

There is a white paper available at http://www.cosuser.com that details typical problems and outlines OSM's identity management solution, COSuser. Novell has also recently published an interesting white paper on identity management practices in global 2000 organizations. I don't have the link handy but you can search for it on their site.
Login or Register to Ask a Question

Previous Thread | Next Thread

8 More Discussions You Might Find Interesting

1. SCO

How do I install a HP Network Printer on SCO admin ?

We have a SCO UnixWare system version 7.1.3, running a front end ERP system. I have 2 new printers I would like to add so that people can print from the ERP system. The two printers are on the network and have IP address's. They are used throughout the day by Windows XP machines, but can not be... (4 Replies)
Discussion started by: Mick_Dundee
4 Replies

2. UNIX for Dummies Questions & Answers

Sudo for Non-Admin User

Can a user who is not an admin be added to sudoers to allow them to elevate to root and run administrative tasks only from the command line by using sudo, but not be able to perform administrative tasks in any other capacity? ---------- Post updated at 11:07 AM ---------- Previous update was at... (1 Reply)
Discussion started by: glev2005
1 Replies

3. Solaris

New user question regarding admin rights

I'm trying to install OpenOffice on Solaris 11 but when I click on the setup icon I get an error message telling me that I need to have admin rights. I've tried logging on as SU or ROOT but cannot. I don't see how to grant myself admin rights. How is it done ? I know there are many many... (7 Replies)
Discussion started by: stansaraczewski
7 Replies

4. Shell Programming and Scripting

Admin user command usage restrictions

Hi, I need to work on restricting the Linux commands to the ADMIN user to some extent. It means for example, Admin users should not use passwd command to change the password of "root" or other important accounts like oracle, etc., So, I want to know which commands should be restricted upto which... (5 Replies)
Discussion started by: Dpu
5 Replies

5. Shell Programming and Scripting

Write a scripts to kill idle user for 60 min. & email user list to admin in text file

Folks, I have written one script for following condition by referring some of online post in this forum. Please correct it if I'm missing something in it. (OS: AIX 5.3) List the idle user. (I used whoidle command to list first 15 user and get username, idle time, pid and login time).... (4 Replies)
Discussion started by: sumit30
4 Replies

6. What is on Your Mind?

Network Sys Admin

Hi, my name is wesly. I an IT tech at the Junior Level. I have a bachelors degree in Computer Information Systems. I would like to fully become a Unix Sys Admin. Can anyone please tell me what I have to do. Do I have to set up a Unix or Linux server. How about Apache. Please give me clues and tips... (1 Reply)
Discussion started by: wes.lat
1 Replies

7. Cybersecurity

Unix Network Security Admin

Hello peoples, I could really use some expert advice. Currently I am starting my curriculumn in CompSci. I am very interested in Unix, Shell Programming and Network Security. I would Like to work in Compusec/Infosec........fight system vulnerability for my future employer. What Cert would you... (3 Replies)
Discussion started by: pacman-iac
3 Replies

8. UNIX for Advanced & Expert Users

IRIX SGI user admin

Hi, I would like to add users to an IRIX system (SGI). Does anyone have any idea of how to add the user? Is there a graphical interface like: admintool(SUN), sam(HPUX), or solstice(SUN) that does the function? Thanks in advance, (1 Reply)
Discussion started by: vtran4270
1 Replies
Login or Register to Ask a Question