HP-UX Secure Resource Partitions (SRP) A.02.02 Administrator's Guide

11.2 Replacing or Deleting Custom SRP Data .................................................................................... 65
12 Using the oracledb Template .......................................................................................................... 66
12.1 Adding the oracledb Template to an SRP Compartment .............................................................. 66
12.1.1 The cmpt Service ............................................................................................................. 66
12.1.2 The ipfilter Service ........................................................................................................... 67
12.1.3 The provision Service ....................................................................................................... 68
12.2 Replacing or Deleting Oracle SRP Data .................................................................................... 68
13 Using the sshd Template ................................................................................................................ 69
13.1 Adding the sshd Template to an SRP Compartment ................................................................... 69
13.1.1 The cmpt Service ............................................................................................................. 69
13.1.2 The ipfilter Service ........................................................................................................... 70
13.1.3 The provision Service ....................................................................................................... 71
13.2 Replacing or Deleting SSHD SRP Data ...................................................................................... 72
14 Starting and Stopping SRP Compartments ........................................................................................ 73
14.1 SRP Startup and Shutdown Processing ...................................................................................... 73
14.2 Starting an SRP Compartment .................................................................................................. 74
14.3 Stopping an SRP Compartment ................................................................................................ 74
15 Managing SRP Data ..................................................................................................................... 76
15.1 Creating an SRP Compartment or Adding Data to an SRP ........................................................... 76
15.2 Deleting Configuration Data .................................................................................................... 77
15.3 Replacing Configuration Data ................................................................................................. 78
15.4 Displaying Help Text and Input Parameters ............................................................................... 78
15.5 Listing Configuration Information About SRP Compartments ......................................................... 79
15.6 Displaying status of SRP Compartments ..................................................................................... 80
15.7 Using srp in Batch Mode ......................................................................................................... 80
16 Customizing SRP Data ................................................................................................................... 81
16.1 Modifying Provision Scripts ..................................................................................................... 81
16.2 Modifying Compartment Rule Include Files ................................................................................ 81
16.2.1 Securing SRP Compartments with Compartment Rule Include Files ......................................... 81
16.3 Manually Editing SRP Configuration Data ................................................................................. 82
16.3.1 Tag Formats .................................................................................................................... 82
17 Exporting and Importing SRPs ........................................................................................................ 85
17.1 Using the srp export Command .............................................................................................. 85
17.2 Using the srp import Command .............................................................................................. 86
17.3 Best practices for Exporting and Importing an SRP ..................................................................... 87
18 Using Serviceguard with SRP.......................................................................................................... 88
18.1 Choosing a Model ................................................................................................................. 88
18.2 Creating an SRP to Use with Serviceguard ................................................................................ 88
18.3 Adapting Serviceguard Scripts for the Classic Model ................................................................. 89
18.4 Creating Serviceguard Scripts for the SRP Package Model .......................................................... 90
19 Verifying and Troubleshooting SRP ................................................................................................. 91
19.1 Verification Procedures ........................................................................................................... 91
19.1.1 Verifying SRP Subsystems ................................................................................................. 91
19.1.2 Verifying Security Containment Compartment Data.............................................................. 91
19.1.3 Verifying RBAC Data ....................................................................................................... 92
19.1.4 Verifying PRM Data ......................................................................................................... 92
19.1.5 Verifying Network Data ................................................................................................... 93
19.1.6 Verifying IPFilter Data ...................................................................................................... 94
19.1.7 Verifying IPSec Data ........................................................................................................ 94
19.2 Troubleshooting Procedures ..................................................................................................... 95
19.2.1 Using the Security Containment Compartment Discover Feature ............................................ 95
19.2.2 Removing or Disabling IPFilter ........................................................................................... 96
19.2.3 Removing or Disabling IPSec ............................................................................................ 96
19.3 Reporting Problems ................................................................................................................ 97