<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: etc/securetty in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859543#M276489</link>
    <description>Hmorrison,&lt;BR /&gt;&lt;BR /&gt;Also please do not forget to assign points to people that is taking their time to help you out.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1058052" target="_blank"&gt;http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1058052&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;7 points to 61 responses.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;&lt;BR /&gt;Jaime.</description>
    <pubDate>Fri, 08 Sep 2006 12:10:33 GMT</pubDate>
    <dc:creator>Jaime Bolanos Rojas.</dc:creator>
    <dc:date>2006-09-08T12:10:33Z</dc:date>
    <item>
      <title>etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859537#M276483</link>
      <description>I was wondering if the etc/securetty file contains anything else besides the list of valid ttys for root login. Also, does it mean that if this file does not exist , root can be accessed from anywhere, providing the password is known?</description>
      <pubDate>Fri, 08 Sep 2006 11:51:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859537#M276483</guid>
      <dc:creator>hmorrison</dc:creator>
      <dc:date>2006-09-08T11:51:17Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859538#M276484</link>
      <description>No, the /etc/securetty file shoud NOT contain anything other than the list of tty's root can log in from.&lt;BR /&gt;&lt;BR /&gt;Yes, if the file does not exist then root can log in from anywhere.&lt;BR /&gt;</description>
      <pubDate>Fri, 08 Sep 2006 11:58:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859538#M276484</guid>
      <dc:creator>Patrick Wallek</dc:creator>
      <dc:date>2006-09-08T11:58:45Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859539#M276485</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;All correct, with the only difference that if present, that doesnt mean root cannot access other than...&lt;BR /&gt;Understand it is not valid for X windows... (CDE environment)&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;All the best&lt;BR /&gt;Victor</description>
      <pubDate>Fri, 08 Sep 2006 12:00:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859539#M276485</guid>
      <dc:creator>Victor BERRIDGE</dc:creator>
      <dc:date>2006-09-08T12:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859540#M276486</link>
      <description>Oops -- too quick on the submit.&lt;BR /&gt;&lt;BR /&gt;That is why it is recommended that the /etc/securetty file contain a single word: console&lt;BR /&gt;&lt;BR /&gt;That way root can only log in directly from /dev/console, the direct attached console or a web console.&lt;BR /&gt;&lt;BR /&gt;Another thing to think about though is SSH access.  Unless your ssh.conf and/or sshd.conf (I can't quite remember) is configured correctly, then root can SSH from one machine to another.  Have a look at the ssh.conf and sshd.conf man pages for information on how to restrict that.</description>
      <pubDate>Fri, 08 Sep 2006 12:01:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859540#M276486</guid>
      <dc:creator>Patrick Wallek</dc:creator>
      <dc:date>2006-09-08T12:01:17Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859541#M276487</link>
      <description>Hmorrison,&lt;BR /&gt;&lt;BR /&gt;From the login man page:&lt;BR /&gt;&lt;BR /&gt;"If the /etc/securetty file is present, login security is in effect, i.e., root is allowed to log in successfully only on the ttys listed in this file. Restricted ttys are listed by device name, one per line. Valid tty names are dependent on the installation. An example is &lt;BR /&gt;&lt;BR /&gt;console&lt;BR /&gt;tty01&lt;BR /&gt;ttya1&lt;BR /&gt;etc.&lt;BR /&gt;&lt;BR /&gt;Note that this feature does not inhibit a normal user from using the su command"&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;&lt;BR /&gt;Jaime&lt;BR /&gt;</description>
      <pubDate>Fri, 08 Sep 2006 12:07:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859541#M276487</guid>
      <dc:creator>Jaime Bolanos Rojas.</dc:creator>
      <dc:date>2006-09-08T12:07:15Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859542#M276488</link>
      <description>check sshd_config for the following line&lt;BR /&gt;&lt;BR /&gt;#PermitRootLogin no&lt;BR /&gt;&lt;BR /&gt;If it says uncommented and "yes" then root can login through ssh.</description>
      <pubDate>Fri, 08 Sep 2006 12:09:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859542#M276488</guid>
      <dc:creator>IT_2007</dc:creator>
      <dc:date>2006-09-08T12:09:31Z</dc:date>
    </item>
    <item>
      <title>Re: etc/securetty</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859543#M276489</link>
      <description>Hmorrison,&lt;BR /&gt;&lt;BR /&gt;Also please do not forget to assign points to people that is taking their time to help you out.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1058052" target="_blank"&gt;http://forums1.itrc.hp.com/service/forums/questionanswer.do?threadId=1058052&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;7 points to 61 responses.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;&lt;BR /&gt;Jaime.</description>
      <pubDate>Fri, 08 Sep 2006 12:10:33 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/etc-securetty/m-p/3859543#M276489</guid>
      <dc:creator>Jaime Bolanos Rojas.</dc:creator>
      <dc:date>2006-09-08T12:10:33Z</dc:date>
    </item>
  </channel>
</rss>

