HP-UX Secure Resource Partitions (SRP) A.02.00 Administrator's Guide

3 Setting Up SRP.............................................................................................................25
Using srp_setup................................................................................................................................25
System Changes....................................................................................................................................25
Example.................................................................................................................................................26
4 Getting Started with SRP.............................................................................................29
Sample SRP Lifecycle............................................................................................................................29
Run Environment for the SRP Session............................................................................................29
Directory for SRP Utilities..........................................................................................................29
Step 1: Setting Up SRP .........................................................................................................................29
Step 2: Displaying Input Parameters for the base Template...............................................................30
Step 3: Creating a Base SRP Compartment...........................................................................................30
Step 4: Listing the Configuration Data ................................................................................................31
Step 5: Adding the sshd Template.......................................................................................................31
Step 6: Listing the Configuration Data for the sshd Template............................................................32
Step 7: Starting the SRP Compartment.................................................................................................33
Step 8: Replacing the prm Configuration Data.....................................................................................33
Step 9: Stopping the SRP Compartment...............................................................................................34
Step 10: Deleting the SRP Compartment..............................................................................................34
5 Using the base Template............................................................................................35
Creating a Base SRP Compartment......................................................................................................35
Requirements for Running srp.......................................................................................................35
Syntax..............................................................................................................................................35
The cmpt Service.............................................................................................................................36
Input Data..................................................................................................................................36
Configuration Data.....................................................................................................................36
Compartment Home Directory and Subdirectories.............................................................36
The admin Service...........................................................................................................................37
Input Data..................................................................................................................................37
Configuration Data.....................................................................................................................37
Login Access.........................................................................................................................38
The prm Service...............................................................................................................................38
Input Data..................................................................................................................................38
Configuration Data.....................................................................................................................39
The network Service......................................................................................................................39
Input Data..................................................................................................................................39
Configuration Data.....................................................................................................................40
HP-UX Transport .................................................................................................................40
Network Initialization and Shutdown Service.....................................................................41
Security Containment Compartment....................................................................................41
The init Service.............................................................................................................................41
Input Data..................................................................................................................................41
Configuration Data.....................................................................................................................41
The login Service...........................................................................................................................41
Input Data..................................................................................................................................42
Configuration Data.....................................................................................................................42
The ipfilter Service....................................................................................................................42
Input Data..................................................................................................................................42
Configuration Data.....................................................................................................................42
Rule Order and Selection......................................................................................................43
IPFilter Rules for IPSec..........................................................................................................43
The ipsec Service...........................................................................................................................43
4 Table of Contents