Operating System - HP-UX
1753663 Members
5807 Online
108798 Solutions
New Discussion юеВ

queries regarding non-trusted hp ux systems:

 
sabinkarvijay
Frequent Advisor

queries regarding non-trusted hp ux systems:

Hi All,

I have lot of queries regarding trusted and non-trusted Hp-ux systems.

Please anyone clarify me on the below:

what is the main difference between trusted and nontrusted systems?

/etc/default/security file exists or not in nontrusted systems? (because in some of the non trusted systems i haven't found

security file...)

How can we know the user password details in non-trusted systems?

Thanks in Advance,

Regards,
Vijay Sabinkari.
6 REPLIES 6
Vivek Bhatia
Trusted Contributor

Re: queries regarding non-trusted hp ux systems:

Hi Sabin,

>> /etc/default/security file exists or not in nontrusted systems? (because in some of the non trusted systems i haven't found

The trusted system will use the default setting from this file:

/tcb/files/auth/system/default/system

Whereas in the untrusted system the default setting are used from the file:

/etc/default/security

>>How can we know the user password details in non-trusted systems?

In Nontrusted system you will have a password in encrypted form weather in the shadow or passwd file

Regards,
Vivek
Suraj K Sankari
Honored Contributor

Re: queries regarding non-trusted hp ux systems:

Hi,

>>what is the main difference between trusted and nontrusted systems?

See the below thread
http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1302078

>>How can we know the user password details in non-trusted systems?

#passwd -sa

Suraj
Kranti Mahmud
Honored Contributor

Re: queries regarding non-trusted hp ux systems:

Hi Sabinkarvijay,

=> What is the main difference between trusted and nontrusted systems?

==>The basic difference between a trusted and an untrusted system is the Auditing and Security part.
In an Untrusted system just go and check the /etc/passwd file and you will find some junk characters being shown in the password field whereas you will find an asterisk (*) in case of a trusted system. The password in that case is placed in /tcb/auth/a
There are many other features that are enabled in a trusted system like password aging, password sizing etc.

To brief up -

A trusted system is one that can be relied upon to perform correctly in two
important ways:
The system's operational features-in particular, its application interface|
work correctly and satisfy the computing needs of the system users.
The system's security features provide the mechanisms necessary to enforce
the site's security policy and provide protection from threats.

A security policy is a statement of the rules and practices that regulate how
an organization manages, protects, and distributes sensitive information.

Rgds-Kranti
Dont look BACK as U will miss something INFRONT!
Kranti Mahmud
Honored Contributor

Re: queries regarding non-trusted hp ux systems:

R.K. #
Honored Contributor

Re: queries regarding non-trusted hp ux systems:


Hi Sabin,

> what is the main difference between trusted and nontrusted systems
See the threads below that describe differences in detail:
http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=638058
http://forums11.itrc.hp.com/service/forums/questionanswer.do?threadId=1157625

With NON-TRUSTED systems, all encrypted passwords are stored in the /etc/passwd file.
With TRUSTED system, all encrypted passwords are stored in files in the /tcb/files/auth directory structure.

Additional features in TRUSTED SYSTEMS:
-auditing
-password setup policies
-a more stringent password and authentication system
-terminal access control
-time-based access control

> How can we know the user password details in non-trusted systems
User passwd informations are stored in the /tcb/files/auth/*/*
And /etc/default/security file has the policies defined in it.

Hope this helps.
R.K.
Don't fix what ain't broke
R.K. #
Honored Contributor

Re: queries regarding non-trusted hp ux systems:

Sorry, Last point of my last thread was for TRUSTED systems:

> How can we know the user password details in TRUSTED systems
User passwd informations are stored in the /tcb/files/auth/*/*
Don't fix what ain't broke