<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: security policy in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990694#M422150</link>
    <description>Shalom oracle,&lt;BR /&gt;&lt;BR /&gt;Not just an ITRC user but a database?&lt;BR /&gt;&lt;BR /&gt;You are correct there is no authentication for syslog in the standard configuration.&lt;BR /&gt;&lt;BR /&gt;Most systems write their own logs to local disk and sit in protected networks with firewalls.&lt;BR /&gt;&lt;BR /&gt;Further, you can run a product on HP-UX called ipfilter which can limit what hosts are permitted to write to the local syslog.&lt;BR /&gt;&lt;BR /&gt;That is adequate protection, even for servers on the public Internet.&lt;BR /&gt;&lt;BR /&gt;SEP</description>
    <pubDate>Thu, 13 Jul 2006 07:11:51 GMT</pubDate>
    <dc:creator>Steven E. Protter</dc:creator>
    <dc:date>2006-07-13T07:11:51Z</dc:date>
    <item>
      <title>security policy</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990693#M422149</link>
      <description>iam planning to prepare security document for hp , can u tell me the approach is correct.&lt;BR /&gt;ididnt understand the first line in the sysntax can some one help me please &lt;BR /&gt;&lt;BR /&gt;Prevent Syslog from accepting messages from network&lt;BR /&gt;---------------------------------------------&lt;BR /&gt;By default the system logging daemon, syslogd, listens for log messages from other systems on network port 514/udp. Unfortunately, the protocol used to transfer these messages does not include any form of authentication, so a malicious outsider could simply barrage the local system's Syslog port with spurious traffic—either as a denial-of-service attack on the system, or to fill up the local system's logging file systems so that subsequent attacks will not be logged. &lt;BR /&gt;&lt;BR /&gt;SYSLOGD_OPTS="`sh -c` /etc/rc.config.d/syslogd ;&lt;BR /&gt;echo "$SYSLOGD_OPTS"'`"&lt;BR /&gt;ch_rc -a -p SYSLOGD_OPTS="-N $SYSLOGD_OPTS" \&lt;BR /&gt;/etc/rc.config.d/syslogd&lt;BR /&gt;</description>
      <pubDate>Thu, 13 Jul 2006 07:04:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990693#M422149</guid>
      <dc:creator>SanthoshMenon</dc:creator>
      <dc:date>2006-07-13T07:04:18Z</dc:date>
    </item>
    <item>
      <title>Re: security policy</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990694#M422150</link>
      <description>Shalom oracle,&lt;BR /&gt;&lt;BR /&gt;Not just an ITRC user but a database?&lt;BR /&gt;&lt;BR /&gt;You are correct there is no authentication for syslog in the standard configuration.&lt;BR /&gt;&lt;BR /&gt;Most systems write their own logs to local disk and sit in protected networks with firewalls.&lt;BR /&gt;&lt;BR /&gt;Further, you can run a product on HP-UX called ipfilter which can limit what hosts are permitted to write to the local syslog.&lt;BR /&gt;&lt;BR /&gt;That is adequate protection, even for servers on the public Internet.&lt;BR /&gt;&lt;BR /&gt;SEP</description>
      <pubDate>Thu, 13 Jul 2006 07:11:51 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990694#M422150</guid>
      <dc:creator>Steven E. Protter</dc:creator>
      <dc:date>2006-07-13T07:11:51Z</dc:date>
    </item>
    <item>
      <title>Re: security policy</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990695#M422151</link>
      <description>Thanks a lot dir &lt;BR /&gt;&lt;BR /&gt;your really great</description>
      <pubDate>Thu, 13 Jul 2006 07:26:49 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/security-policy/m-p/4990695#M422151</guid>
      <dc:creator>SanthoshMenon</dc:creator>
      <dc:date>2006-07-13T07:26:49Z</dc:date>
    </item>
  </channel>
</rss>

