<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Trusted Systems. in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862121#M96413</link>
    <description>The only drawback is a little more administration of user accounts and also the root account falls into the same rules as other user accounts.&lt;BR /&gt;&lt;BR /&gt;It does support the R commands.&lt;BR /&gt;&lt;BR /&gt;It does run in a service guard environment.&lt;BR /&gt;&lt;BR /&gt;I prefer to use Trusted systems because the added security benefits.</description>
    <pubDate>Wed, 11 Dec 2002 13:51:15 GMT</pubDate>
    <dc:creator>Ken Hubnik_2</dc:creator>
    <dc:date>2002-12-11T13:51:15Z</dc:date>
    <item>
      <title>Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862120#M96412</link>
      <description>Hello!&lt;BR /&gt;&lt;BR /&gt;I know the many advantages of running HP/UX as a trusted system.&lt;BR /&gt;&lt;BR /&gt;What are the  drawbacks ?  What do one lose when the system is converted to trusted system?&lt;BR /&gt;&lt;BR /&gt;Does it still support  R-fuctions like RCP/RSH ? I know ssh is preferred.&lt;BR /&gt;&lt;BR /&gt;Is  it supported on servers running Service Guard.&lt;BR /&gt;&lt;BR /&gt;Any comment/suggestion is appreciated.&lt;BR /&gt;&lt;BR /&gt;TIA</description>
      <pubDate>Wed, 11 Dec 2002 13:46:44 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862120#M96412</guid>
      <dc:creator>John Tyler</dc:creator>
      <dc:date>2002-12-11T13:46:44Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862121#M96413</link>
      <description>The only drawback is a little more administration of user accounts and also the root account falls into the same rules as other user accounts.&lt;BR /&gt;&lt;BR /&gt;It does support the R commands.&lt;BR /&gt;&lt;BR /&gt;It does run in a service guard environment.&lt;BR /&gt;&lt;BR /&gt;I prefer to use Trusted systems because the added security benefits.</description>
      <pubDate>Wed, 11 Dec 2002 13:51:15 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862121#M96413</guid>
      <dc:creator>Ken Hubnik_2</dc:creator>
      <dc:date>2002-12-11T13:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862122#M96414</link>
      <description>Hi&lt;BR /&gt;All passwords are changed if you convert to trusted system.&lt;BR /&gt;I do not know other problems.&lt;BR /&gt;Chris</description>
      <pubDate>Wed, 11 Dec 2002 13:54:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862122#M96414</guid>
      <dc:creator>Christian Gebhardt</dc:creator>
      <dc:date>2002-12-11T13:54:18Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862123#M96415</link>
      <description>I heard of certain issues with running R-functions between trusted and non-trusted system,&lt;BR /&gt;&lt;BR /&gt;Can someone confirm that r-functions work between trusted and non trusted systems. (both ways using  .rhosts  for automatic login).&lt;BR /&gt;&lt;BR /&gt;The problem is that we have user scripts whichg uses rcp and remsh to copy and run commands on remote systems.&lt;BR /&gt;&lt;BR /&gt;So should we convert them all to trusted at the same time? &lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 11 Dec 2002 14:12:05 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862123#M96415</guid>
      <dc:creator>John Tyler</dc:creator>
      <dc:date>2002-12-11T14:12:05Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862124#M96416</link>
      <description>Trusted system do work with all the 'r' commmands. But before changing all the system to trusted do take backup of /etc/passwd file.&lt;BR /&gt;&lt;BR /&gt;-USA..&lt;BR /&gt;</description>
      <pubDate>Wed, 11 Dec 2002 14:41:12 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862124#M96416</guid>
      <dc:creator>Uday_S_Ankolekar</dc:creator>
      <dc:date>2002-12-11T14:41:12Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862125#M96417</link>
      <description>Make sure that you check your applications. Trusted systems use different libraries for verifing users, user id's and probably other functions.&lt;BR /&gt;&lt;BR /&gt;Tim</description>
      <pubDate>Thu, 12 Dec 2002 14:57:56 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862125#M96417</guid>
      <dc:creator>Timothy P. Jackson</dc:creator>
      <dc:date>2002-12-12T14:57:56Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862126#M96418</link>
      <description>I found out that trusted system won't allow rlogin without prompting for password.</description>
      <pubDate>Fri, 13 Dec 2002 05:00:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862126#M96418</guid>
      <dc:creator>nck2pg2</dc:creator>
      <dc:date>2002-12-13T05:00:53Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862127#M96419</link>
      <description>When I converted mine to trusted system, I found out that after 3 tries of wrong password entered via telnet session, the account would be locked. But, I managed to resolve by logging in from console. But still, that would give a chance to other admins/users to sabotage the account.</description>
      <pubDate>Fri, 13 Dec 2002 06:22:29 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862127#M96419</guid>
      <dc:creator>Wiryanto Victor</dc:creator>
      <dc:date>2002-12-13T06:22:29Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862128#M96420</link>
      <description>You lose the ability to forget root password and boot to single user mode to just to reset.  (Asks for old password when trusted.)  A work around for this is to have a user (like you) with restricted sam permissions.  (You could log in and untrust your system, among other things.)  &lt;BR /&gt;&lt;BR /&gt;The trusted system stuff lets you configure the number of incorrect logins allowed before a suspend, and stuff like that.  &lt;BR /&gt;&lt;BR /&gt;Other than that, there aren't really too many problems with having a trusted system.  You may want to be careful about how you trust the system if you have had users on the system for some time, as the default policies tend to expire passwords and stuff like that.  After converting, I would definitely leave your root session logged in to make sure everything's happy.  &lt;BR /&gt;&lt;BR /&gt;We have one system that is untrusted due to some dumb little database/application problem with the tcb structure.  It is a 10.20 box with an old informix database on it.  Everything else is trusted, and it works fine.  &lt;BR /&gt;&lt;BR /&gt;Hope it helps&lt;BR /&gt;&lt;BR /&gt;John</description>
      <pubDate>Fri, 13 Dec 2002 06:57:46 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862128#M96420</guid>
      <dc:creator>John Payne_2</dc:creator>
      <dc:date>2002-12-13T06:57:46Z</dc:date>
    </item>
    <item>
      <title>Re: Trusted Systems.</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862129#M96421</link>
      <description>Couple of thinks to make life easier:&lt;BR /&gt;&lt;BR /&gt;1)Make a copy of /etc/passwd&lt;BR /&gt;2)Make sure you don't have any special caracters in the /etc/passwd (If you are running SAMBA and your workstation need to be member of the domani, where HP-UX is PDC, than you have entry in your /etc/passwd something like wsat1$:*:.......)&lt;BR /&gt;3)All of your passwords will be expired, I suggest you to execute comand modprpw -V and save some hadakes&lt;BR /&gt;4)HAVE AT LEAST TWO SESSIONS OPENED AS A ROOT (just in case if you lock out your root user)&lt;BR /&gt;&lt;BR /&gt;Good luck&lt;BR /&gt;&lt;BR /&gt;Miro&lt;BR /&gt;4)</description>
      <pubDate>Fri, 13 Dec 2002 13:40:50 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/trusted-systems/m-p/2862129#M96421</guid>
      <dc:creator>mvr</dc:creator>
      <dc:date>2002-12-13T13:40:50Z</dc:date>
    </item>
  </channel>
</rss>

