HP-UX 11i Version 2 December 2005 Release Notes

Table Of Contents
Security
HP-UX 11i Security Containment
Chapter 8
164
HP-UX 11i Security Containment
HP-UX 11i Security Containment version B.11.23.01 introduces three core technologies:
compartments, fine-grained privileges, and role-based access control. Together, these
three components provide a highly secure operating environment without requiring
applications to be modified.
In addition, HP-UX 11i Security Containment makes several trusted mode security
features available on standard mode HP-UX systems. These features are called the
HP-UX Standard Mode Security Extensions and include Audit, a User Security
Database, and Per-User Security Attributes.
With HP-UX 11i Security Containment, the HP-UX 11i v2 operating system provides a
highly secure, easy to maintain, and backwards-compatible environment to deploy
business applications.
Summary of Change
HP-UX 11i Security Containment is now available on the Software Pack (SPK) media for
HP-UX 11i v2 December 2005. (For more information about SPK, see “Software Pack
(Optional HP-UX 11i v2 Core Enhancements)” on page 27.) Previously, the product was
delivered on the Web.
Impact
With HP-UX 11i Security Containment, the HP-UX 11i v2 operating system provides a
highly secure, easy to maintain, and backwards-compatible environment to deploy
business applications.
Compatibility
There are no known compatibility issues.
Performance
Auditing increases system overhead. When performance is a concern, be selective about
what events and users are audited. This can help reduce the impact of auditing on
performance.
Documentation
For further information, refer to the following:
•Manpages:
privileges (3)
privileges (5)
compartments (4)
compartments (5)
rbac (5)
audit (5)
security (4)