HP-UX System Administrator's Guide: Security Management HP-UX 11i v3 (B3921-90020, September 2010)

Table Of Contents
putspwent, 191
G
getacl command
viewing ACLs with, 97
getdvagent function, 191
getfilexsec command, 113, 128
getprdfent function, 191
getprocxsec command, 113, 128
getprpwent function, 191
getprtcent function, 191
getpwent function, 191
getspwent function, 191
group account
managing, 31
group ID (gid), 188
GSS-API
SSH, 81
guest account
monitoring, 30
H
HFS, 91
HFS ACL
and NFS, 103
commands and calls that work with, 93
compared with JFS ACL, 102
setting, 91
High Performance File System
See HFS, 91
history
password, 190
host-based authentication
and public key based authentication, 81
used by SSH, 81
HP-UX AAA Server (RADIUS), 193
HP-UX Bastille, 15, 25, 193
defined, 199
HP-UX Directory Server, 194
HP-UX EVFS, 194
HP-UX HIDS, 194
HP-UX installation
installing security patches, 26
postinstallation security tips, 26
preventing security breaches during booting, 23
security considerations, 23
setting install-time security options, 25
HP-UX IPFilter, 195
HP-UX IPSec, 195
HP-UX LDAP-UX, 195
HP-UX RBAC
architecture, 143
auditing, 182
commands, 142
wrapping, 148
components, 140
configuration files, 141
configuring Compartments, 156
default user, 150
manpages, 142
operation, 144
troubleshooting, 162
HP-UX Secure Shell, 196
HP-UX Security Patches, 197
HP-UX SRP, 196
HP-UX TCS, 196
I
IKE (Internet Key Exchange)
protocol, 202
inetd daemon
overview of, 71
securing, 71
TCP wrappers and, 72
Install-Time Security, 25
installing HP-UX
installing security patches after, 26
postinstallation security tips, 26
preventing security breaches during booting, 23
security considerations, 23
setting install-time security options, 25
installing security patches
using Software Assistant, 26
Internet daemon
See inetd daemon, 71
Internet Services, 67
overview of, 67
IPSec policy
definition, 202
J
JFS, 91
JFS ACL
and NFS, 103
changing with setacl command, 100
compared with HFS ACL, 102
example of changing a minimal, 98
setting, 95
using default entries, 99
Journaled File System
See JFS, 91
L
last command
examples of using, 33
LDAP directory server
securing passwords stored in, 46
lifetime
password aging, 189
log file
audit, 173
logical volume
209