<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 'xxx' in password field for sam_exec in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801631#M82055</link>
    <description>maybe a copied password file during a system upgrade perhaps?</description>
    <pubDate>Fri, 06 Sep 2002 20:35:05 GMT</pubDate>
    <dc:creator>Ted Ellis_2</dc:creator>
    <dc:date>2002-09-06T20:35:05Z</dc:date>
    <item>
      <title>'xxx' in password field for sam_exec</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801628#M82052</link>
      <description>&lt;BR /&gt;What's the reasoning behind the 'xxx' in the password field for the 'sam_exec' account under 11.0?  Is it secure?  And if the goal was to be secure, why wasn't a '*' used to indicate no standard logins on that account?&lt;BR /&gt;Thanks,&lt;BR /&gt;-Ron Levy&lt;BR /&gt;</description>
      <pubDate>Fri, 06 Sep 2002 20:25:01 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801628#M82052</guid>
      <dc:creator>Ron Levy</dc:creator>
      <dc:date>2002-09-06T20:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: 'xxx' in password field for sam_exec</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801629#M82053</link>
      <description>hmmm... we run 11.0 and there is no sam_exec user on our systems.  Are you a trusted system?  If so, we do not use that and I would not know the answer.  One thing though... xxx in the password field is just as secure as *... it is an entry that does not meet the qualifications for a properly encoded password... ie. it requires the salt and 11 characters, for a total of 13 characters to be something that could be decoded.  If you want, you can always run passwd -l sam_exec to lock down the account with the normal * entry.  Either way this account is not getting logged into</description>
      <pubDate>Fri, 06 Sep 2002 20:31:47 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801629#M82053</guid>
      <dc:creator>Ted Ellis_2</dc:creator>
      <dc:date>2002-09-06T20:31:47Z</dc:date>
    </item>
    <item>
      <title>Re: 'xxx' in password field for sam_exec</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801630#M82054</link>
      <description>Are you sure that you are running 11.00. The sam_exec account is a 9.00 thing...&lt;BR /&gt;&lt;BR /&gt;HP-UX release 9.0 contains some significant enhancements related to the&lt;BR /&gt;    remote management of network security.  In particular, SAM now contains&lt;BR /&gt;    a Remote System Administration area that allows system management to&lt;BR /&gt;    remotely administer networked systems.&lt;BR /&gt;&lt;BR /&gt;    Although this feature has only recently been released, preliminary&lt;BR /&gt;    investigation has revealed the following:&lt;BR /&gt;&lt;BR /&gt;      When remote system administration is requested, SAM logs in to the&lt;BR /&gt;      remote system, and creates a new account on the remote system (you&lt;BR /&gt;      must provide the root password to the remote system to do this).&lt;BR /&gt;&lt;BR /&gt;      The new account is created with user name sam_exec, UID=0 and GID=1,&lt;BR /&gt;      and is created with a copy of the root password currently used on the&lt;BR /&gt;      remote system.  This new account is used by SAM whenever logging in to&lt;BR /&gt;      the remote system.&lt;BR /&gt;&lt;BR /&gt;    While not in itself a problem, this seems to be very lightly (if at&lt;BR /&gt;    all) documented at present.&lt;BR /&gt;&lt;BR /&gt;Don't know why you would need this on 11.0&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;GL,&lt;BR /&gt;C</description>
      <pubDate>Fri, 06 Sep 2002 20:33:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801630#M82054</guid>
      <dc:creator>Craig Rants</dc:creator>
      <dc:date>2002-09-06T20:33:08Z</dc:date>
    </item>
    <item>
      <title>Re: 'xxx' in password field for sam_exec</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801631#M82055</link>
      <description>maybe a copied password file during a system upgrade perhaps?</description>
      <pubDate>Fri, 06 Sep 2002 20:35:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801631#M82055</guid>
      <dc:creator>Ted Ellis_2</dc:creator>
      <dc:date>2002-09-06T20:35:05Z</dc:date>
    </item>
    <item>
      <title>Re: 'xxx' in password field for sam_exec</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801632#M82056</link>
      <description>We have a 10.20 server that was used as the primary place to lauch sam for several other servers of that application family.  The other 4 servers associated with it are 11.00.  &lt;BR /&gt;&lt;BR /&gt;When, in SAM, you choose "Run SAM on Remote Systems" and then use the next screen's "Action" drop down list to "Add System", it will add the sam_exec account to the system you are choosing to add.  This feature is still available in 10.20, 11.00 and 11.11 (11i).&lt;BR /&gt;&lt;BR /&gt;Our 11.00 servers are in trusted mode, so the password field does show up as an '*' for sam_exec.  The 10.20 server has 'xxx' as the password.  I'm assuming, although I have no documentation to prove it, that the 'xxx' was just a way to lock the account so that no one could log in using that account.&lt;BR /&gt;&lt;BR /&gt;Hope that helps!&lt;BR /&gt;Michele</description>
      <pubDate>Mon, 09 Sep 2002 10:33:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/xxx-in-password-field-for-sam-exec/m-p/2801632#M82056</guid>
      <dc:creator>Michele Macintire</dc:creator>
      <dc:date>2002-09-09T10:33:18Z</dc:date>
    </item>
  </channel>
</rss>

