<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: one-time password on HP/UX? in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269464#M749397</link>
    <description>Hi Michael,&lt;BR /&gt;&lt;BR /&gt;I am not sure if once-per-session password can be enabled. But if you convert your HP-UX to a trusted system you can configure the password control/ageing to achieve what you want (to certain extent).&lt;BR /&gt;&lt;BR /&gt;Refer:&lt;BR /&gt;&lt;A href="http://docs.hp.com/hpux/onlinedocs/B2355-90121/00/00/19-con.html" target="_blank"&gt;http://docs.hp.com/hpux/onlinedocs/B2355-90121/00/00/19-con.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;-Karthik S S</description>
    <pubDate>Thu, 06 May 2004 08:30:11 GMT</pubDate>
    <dc:creator>Karthik S S</dc:creator>
    <dc:date>2004-05-06T08:30:11Z</dc:date>
    <item>
      <title>one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269461#M749391</link>
      <description>Hi all,&lt;BR /&gt;&lt;BR /&gt;one item in our security-list is the requirement of an once-per-session password for users, who log into our machines with an insecure connection or protocol.&lt;BR /&gt;I've never heard before about this. Is there any software or patch available from HP?&lt;BR /&gt;Where in the OS i can set this functionality?&lt;BR /&gt;&lt;BR /&gt;Is there anybody out there, who can remedy my lack of information?&lt;BR /&gt;Please help&lt;BR /&gt;&lt;BR /&gt;Thanx in advance&lt;BR /&gt;Michael</description>
      <pubDate>Thu, 06 May 2004 08:18:17 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269461#M749391</guid>
      <dc:creator>Michael_356</dc:creator>
      <dc:date>2004-05-06T08:18:17Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269462#M749393</link>
      <description>With 11.0 and 11i you have the modprpw command which lets you set things like password lifetime (in days), expiration time (days) and account expiration time (days). As you can see its all in days, so the best you can do is have a password valid for 1 day.&lt;BR /&gt;</description>
      <pubDate>Thu, 06 May 2004 08:22:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269462#M749393</guid>
      <dc:creator>Stefan Farrelly</dc:creator>
      <dc:date>2004-05-06T08:22:01Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269463#M749395</link>
      <description>see this documents:&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/B2355-90121/B2355-90121_top.html&amp;amp;con=/hpux/onlinedocs/B2355-90121/00/00/4-con.html&amp;amp;toc=/hpux/onlinedocs/B2355-90121/00/00/4-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121" target="_blank"&gt;http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/B2355-90121/B2355-90121_top.html&amp;amp;con=/hpux/onlinedocs/B2355-90121/00/00/4-con.html&amp;amp;toc=/hpux/onlinedocs/B2355-90121/00/00/4-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/B2355-90121/B2355-90121_top.html&amp;amp;con=/hpux/onlinedocs/B2355-90121/00/00/18-con.html&amp;amp;toc=/hpux/onlinedocs/B2355-90121/00/00/18-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121" target="_blank"&gt;http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/B2355-90121/B2355-90121_top.html&amp;amp;con=/hpux/onlinedocs/B2355-90121/00/00/18-con.html&amp;amp;toc=/hpux/onlinedocs/B2355-90121/00/00/18-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/5187-2216/5187-2216_top.html&amp;amp;con=/hpux/onlinedocs/5187-2216/00/00/73-con.html&amp;amp;toc=/hpux/onlinedocs/5187-2216/00/00/73-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121" target="_blank"&gt;http://www.docs.hp.com/cgi-bin/fsearch/framedisplay?top=/hpux/onlinedocs/5187-2216/5187-2216_top.html&amp;amp;con=/hpux/onlinedocs/5187-2216/00/00/73-con.html&amp;amp;toc=/hpux/onlinedocs/5187-2216/00/00/73-toc.html&amp;amp;searchterms=trusted%7cmode&amp;amp;queryid=20040506-072121&lt;/A&gt;</description>
      <pubDate>Thu, 06 May 2004 08:23:41 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269463#M749395</guid>
      <dc:creator>Jairo Campana</dc:creator>
      <dc:date>2004-05-06T08:23:41Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269464#M749397</link>
      <description>Hi Michael,&lt;BR /&gt;&lt;BR /&gt;I am not sure if once-per-session password can be enabled. But if you convert your HP-UX to a trusted system you can configure the password control/ageing to achieve what you want (to certain extent).&lt;BR /&gt;&lt;BR /&gt;Refer:&lt;BR /&gt;&lt;A href="http://docs.hp.com/hpux/onlinedocs/B2355-90121/00/00/19-con.html" target="_blank"&gt;http://docs.hp.com/hpux/onlinedocs/B2355-90121/00/00/19-con.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;-Karthik S S</description>
      <pubDate>Thu, 06 May 2004 08:30:11 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269464#M749397</guid>
      <dc:creator>Karthik S S</dc:creator>
      <dc:date>2004-05-06T08:30:11Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269465#M749399</link>
      <description>security  :-) &lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://hpux.cs.utah.edu/hppd/hpux/Sysadmin/skey-1.1b/" target="_blank"&gt;http://hpux.cs.utah.edu/hppd/hpux/Sysadmin/skey-1.1b/&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;The S/KEY one-time password system provides authentication over networks that are subject to eavesdropping/reply attacks. This system has several advantages compared with other one-time or multi-user authentication systems. The user's secret password never crosses the network during login, or when executing other commands requiring authentication such as the UNIX passwd or su commands. No secret information is stored anywhere, including the host being protected, and the underlying algorithm may be (and it fact, is) public knowledge. The remote end of this system can run on any locally available computer. The host end could be integrated into any application requiring authentication.</description>
      <pubDate>Thu, 06 May 2004 08:34:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269465#M749399</guid>
      <dc:creator>Jairo Campana</dc:creator>
      <dc:date>2004-05-06T08:34:18Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269466#M749401</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;I don't think there is anything that you can do on the system to allow you to do this. but before you get to the server you can try something like securID.&lt;BR /&gt;&lt;BR /&gt;Try this link  below,&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.rsasecurity.com/products/securid/" target="_blank"&gt;http://www.rsasecurity.com/products/securid/&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;VPN is another solution.&lt;BR /&gt;&lt;BR /&gt;Hope this helps.&lt;BR /&gt;&lt;BR /&gt;Regds&lt;BR /&gt;</description>
      <pubDate>Thu, 06 May 2004 08:45:38 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269466#M749401</guid>
      <dc:creator>Sanjay_6</dc:creator>
      <dc:date>2004-05-06T08:45:38Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269467#M749403</link>
      <description>In a normal system only way out is to sepcify:&lt;BR /&gt;"Password Expiration Time" for the user and don't know how it will help you.&lt;BR /&gt;But if your system is trusted this is possible by configuring proper password policy for that user.&lt;BR /&gt;See the attached docs for tcb:&lt;BR /&gt;</description>
      <pubDate>Thu, 06 May 2004 08:48:46 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269467#M749403</guid>
      <dc:creator>Bharat Katkar</dc:creator>
      <dc:date>2004-05-06T08:48:46Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269468#M749405</link>
      <description>Also take a look at one more doc which talks about password aging in non trusted systems&lt;BR /&gt;&lt;BR /&gt;hope this helps:&lt;BR /&gt; &lt;A href="http://www2.itrc.hp.com/service/cki/docDisplay.do?docLocale=en_US&amp;amp;admit=-1335382922+1083851413890+28353475&amp;amp;docId=200000067130219" target="_blank"&gt;http://www2.itrc.hp.com/service/cki/docDisplay.do?docLocale=en_US&amp;amp;admit=-1335382922+1083851413890+28353475&amp;amp;docId=200000067130219&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 06 May 2004 08:54:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269468#M749405</guid>
      <dc:creator>Bharat Katkar</dc:creator>
      <dc:date>2004-05-06T08:54:45Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269469#M749407</link>
      <description>Thanx alot for all your answers.&lt;BR /&gt;&lt;BR /&gt;All of our machines runs in trusted mode,&lt;BR /&gt;pw-expiration and -lifetime is set to accurat values for "normal" users but i need a solution for our supporters and suppliers who need temporary access to our system.&lt;BR /&gt;The need is an enhanced functionality of pw-expirationtime. One day-password isn't enough in this case, once-per-session-password is the requirement.&lt;BR /&gt;&lt;BR /&gt;thx to jairo, maybe the only way to getz this functionality&lt;BR /&gt;&lt;BR /&gt;Michael</description>
      <pubDate>Thu, 06 May 2004 09:12:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269469#M749407</guid>
      <dc:creator>Michael_356</dc:creator>
      <dc:date>2004-05-06T09:12:37Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269470#M749409</link>
      <description>well, if you are the programmer type, I have another suggestion:&lt;BR /&gt;&lt;BR /&gt;in the $HOME/.profile of the userid which will only be allowed to login once in its lifetime, you can put a command to execute an executable program (not a shell script as this will require to be run with setuid bit, aka sticky bit). This command will not be anything more than a c wrapper for command &lt;BR /&gt;&lt;BR /&gt;passwd -l $(who am i| awk {'print $1'})&lt;BR /&gt;&lt;BR /&gt;which will immediately disable the subsequent logins to this account upon first successful login.&lt;BR /&gt;&lt;BR /&gt;Just a suggestion if you can not find a shrink wrapped solution.</description>
      <pubDate>Thu, 06 May 2004 10:25:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269470#M749409</guid>
      <dc:creator>Mel Burslan</dc:creator>
      <dc:date>2004-05-06T10:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269471#M749411</link>
      <description>@mel:&lt;BR /&gt;&lt;BR /&gt;Yes, I AM of this type :-)&lt;BR /&gt;&lt;BR /&gt;Great idea with a small downer:&lt;BR /&gt;How to secure the entry in $HOME/.profile?&lt;BR /&gt;Maybe i can hide it with an inexpressively name but in every company is ONE person who are a little bit too curious. Better to deny access to some files then to hide it in an accessible file.&lt;BR /&gt;Or is it possible, to chown $HOME/.profile to root?</description>
      <pubDate>Fri, 07 May 2004 04:07:29 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269471#M749411</guid>
      <dc:creator>Michael_356</dc:creator>
      <dc:date>2004-05-07T04:07:29Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269472#M749413</link>
      <description>Or is it possible, to chown $HOME/.profile to root?  &lt;BR /&gt;  &lt;BR /&gt;No. Instead you use chmod and set SUID bit.</description>
      <pubDate>Fri, 07 May 2004 08:38:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269472#M749413</guid>
      <dc:creator>Bharat Katkar</dc:creator>
      <dc:date>2004-05-07T08:38:03Z</dc:date>
    </item>
    <item>
      <title>Re: one-time password on HP/UX?</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269473#M749415</link>
      <description>Michael,&lt;BR /&gt;&lt;BR /&gt;I have seen more frequently than not, .profile and other .*rc files being owned by root:sys and functioning well as long as the the permissions are open to be read by anyone, i.e., 444, 644 or 744 permissions. Many times I encountered this root ownership of the skelton files is mainly due to a sloppy previous system admin/builder but it works and that I believe is what matters to you the most.&lt;BR /&gt;</description>
      <pubDate>Fri, 07 May 2004 11:08:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/one-time-password-on-hp-ux/m-p/3269473#M749415</guid>
      <dc:creator>Mel Burslan</dc:creator>
      <dc:date>2004-05-07T11:08:50Z</dc:date>
    </item>
  </channel>
</rss>

