<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic sulogin in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734308#M753207</link>
    <description>Is there/and where is the sulogin file located in a HP Unix system??&lt;BR /&gt;&lt;BR /&gt;Can it be used to prompt for a password when entering the system maintenance or single user mode??</description>
    <pubDate>Thu, 30 May 2002 09:12:27 GMT</pubDate>
    <dc:creator>Marvyn Torres</dc:creator>
    <dc:date>2002-05-30T09:12:27Z</dc:date>
    <item>
      <title>sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734308#M753207</link>
      <description>Is there/and where is the sulogin file located in a HP Unix system??&lt;BR /&gt;&lt;BR /&gt;Can it be used to prompt for a password when entering the system maintenance or single user mode??</description>
      <pubDate>Thu, 30 May 2002 09:12:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734308#M753207</guid>
      <dc:creator>Marvyn Torres</dc:creator>
      <dc:date>2002-05-30T09:12:27Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734309#M753208</link>
      <description>&lt;BR /&gt;/var/adm/sulog&lt;BR /&gt;&lt;BR /&gt;and no, you cant prompt for a password if someone boots in lvm maintenance mode or single user mode. Dont leave the key in service mode on the server and then nobody can boot in single user mode or maintenance mode without the key!&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Thu, 30 May 2002 09:16:07 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734309#M753208</guid>
      <dc:creator>Stefan Farrelly</dc:creator>
      <dc:date>2002-05-30T09:16:07Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734310#M753209</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;trusted would be best solution.&lt;BR /&gt;&lt;BR /&gt;convert to a trusted system : &lt;BR /&gt;Within SAM you can set up the system security policies so that a &lt;BR /&gt;login is required when booting the system to single user. &lt;BR /&gt;This can be enabled as follows: &lt;BR /&gt;SAM --&amp;gt; Auditing and Security --&amp;gt; System security Policies --&amp;gt; &lt;BR /&gt;General User Account Policies : enable "Require login upon boot &lt;BR /&gt;to single user state" &lt;BR /&gt;The root account by default will have authority to boot the &lt;BR /&gt;system to single user. &lt;BR /&gt;You can then authorise a particular user to boot to single user &lt;BR /&gt;SAM --&amp;gt; Accounts For Users and Groups --&amp;gt; select the user ---&amp;gt; &lt;BR /&gt;Modify Users Security Policy --&amp;gt; General User Account Policies &lt;BR /&gt;and enable " Authorize user to Boot to single-User state" . &lt;BR /&gt;&lt;BR /&gt;The "Boot authentication prompt " is displayed if the "Require &lt;BR /&gt;login Upon Boot to single user state" is enabled and the system &lt;BR /&gt;is booted to single user. &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;                steve Steel</description>
      <pubDate>Thu, 30 May 2002 09:18:06 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734310#M753209</guid>
      <dc:creator>Steve Steel</dc:creator>
      <dc:date>2002-05-30T09:18:06Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734311#M753210</link>
      <description>Steve,&lt;BR /&gt;&lt;BR /&gt;Clarification please.&lt;BR /&gt;&lt;BR /&gt;Does your solution mean that the root account will also be prompted for a password when entering single user mode??</description>
      <pubDate>Thu, 30 May 2002 09:58:31 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734311#M753210</guid>
      <dc:creator>Marvyn Torres</dc:creator>
      <dc:date>2002-05-30T09:58:31Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734312#M753211</link>
      <description>Hi Marvin,&lt;BR /&gt;&lt;BR /&gt;first of all to say: As all the others allready said, change to a trusted system! &lt;BR /&gt;&lt;BR /&gt;To give the answer to your question: YES, then even root is prompted for a password when booting into single user mode. Only possibility to get into the system then is to use installation CD- ROM and remount the file systems to get in write- mode and then remove root password from tcb- directory.&lt;BR /&gt;&lt;BR /&gt;Please don't forget also to secure your web console. (If you have a computer which has one...) Go into service processor mode and enter HE or LI at prompt to find information which commands you need to activate.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;Allways stay on the bright side of life!&lt;BR /&gt;&lt;BR /&gt;Peter</description>
      <pubDate>Thu, 30 May 2002 10:10:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734312#M753211</guid>
      <dc:creator>Peter Kloetgen</dc:creator>
      <dc:date>2002-05-30T10:10:01Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734313#M753212</link>
      <description>Hi&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;peter got it in one.&lt;BR /&gt;&lt;BR /&gt;If you want security then apply it by making the system trusted.&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;                      steve Steel</description>
      <pubDate>Thu, 30 May 2002 10:12:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734313#M753212</guid>
      <dc:creator>Steve Steel</dc:creator>
      <dc:date>2002-05-30T10:12:47Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734314#M753213</link>
      <description>How do you go about checking (discreetly - so as not to appear stupid among peers -hehe)if a system is trusted??</description>
      <pubDate>Thu, 30 May 2002 23:58:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734314#M753213</guid>
      <dc:creator>Marvyn Torres</dc:creator>
      <dc:date>2002-05-30T23:58:37Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734315#M753214</link>
      <description>Hi Marvyn:&lt;BR /&gt;&lt;BR /&gt;A trusted system will have a protected password file: '/tcb/files/auth/'.&lt;BR /&gt;&lt;BR /&gt;A trusted system (most visibly) displays the message "last successful/unsuccessful login..." upon user logon.  This is a dead-give-away of a trusted server.&lt;BR /&gt;&lt;BR /&gt;Regards!&lt;BR /&gt;&lt;BR /&gt;...JRF...&lt;BR /&gt;</description>
      <pubDate>Fri, 31 May 2002 00:27:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734315#M753214</guid>
      <dc:creator>James R. Ferguson</dc:creator>
      <dc:date>2002-05-31T00:27:53Z</dc:date>
    </item>
    <item>
      <title>Re: sulogin</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734316#M753215</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;1) This is the direct approach (definitive and quickest):&lt;BR /&gt;&lt;BR /&gt;# /etc/tsconvert&lt;BR /&gt;System has already been converted.&lt;BR /&gt;&lt;BR /&gt;If your system has already been converted, tsconvert will show the status by printing the message stating that your system has already been converted.&lt;BR /&gt;&lt;BR /&gt;Other methods include:&lt;BR /&gt;&lt;BR /&gt;2) Not surest method but one of the quickest methods:&lt;BR /&gt;&lt;BR /&gt;# ll -d /tcb&lt;BR /&gt;&lt;BR /&gt;Check for /tcb existence. /tcb is created upon conversion.&lt;BR /&gt;&lt;BR /&gt;3) One definitive way (one long method):&lt;BR /&gt;&lt;BR /&gt;The definitive way (this is just one way) is to check it from SAM:&lt;BR /&gt;&lt;BR /&gt;SAM &lt;BR /&gt;-&amp;gt; Audit and Security&lt;BR /&gt;-&amp;gt; Audited Events&lt;BR /&gt;&lt;BR /&gt;If your system is not trusted, you will see a popup dialog saying that your system is not trusted, and ask you whether you wish to convert it to trusted.&lt;BR /&gt;&lt;BR /&gt;Once trusted, under "Actions",&lt;BR /&gt;you will notice the option to: "Unconvert the system"&lt;BR /&gt;&lt;BR /&gt;Hope this helps. Regards.&lt;BR /&gt;&lt;BR /&gt;Steven Sim Kok Leong</description>
      <pubDate>Fri, 31 May 2002 00:33:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sulogin/m-p/2734316#M753215</guid>
      <dc:creator>Steven Sim Kok Leong</dc:creator>
      <dc:date>2002-05-31T00:33:37Z</dc:date>
    </item>
  </channel>
</rss>

