User's Manual

Table Of Contents
D Creating Secure Resource Partitions
The optional HP-UX feature Security Containment, available starting with HP-UX 11i v2 (B.11.23),
provides “secure compartments,” which allow you to isolate processes and files. You can place
one or more secure compartments in a single PRM group to manage the resource allocation for
your secure compartments.
Using these features together, you form Secure Resource Partitions.
You can assign compartments to PRM groups to form Secure Resource Partitions using either the
PRM configuration file or the PRM GUI. For more information, see “Specifying PRM
groups/controlling CPU resource use” (page 54).
PRM also provides the following utilities for use with Security Containment:
prm2scomp Generates a minimal Security Containment configuration from a PRM configuration.
scomp2prm Generates a minimal PRM configuration from a Security Containment configuration.
srpgen Generates Secure Resource Partitions by creating both a minimal Security
Containment configuration and a minimal PRM configuration based on your input.
126 Creating Secure Resource Partitions