Operating System - HP-UX
1753665 Members
5630 Online
108798 Solutions
New Discussion юеВ

su - oracle...from root prompt

 
SOLVED
Go to solution
jhingoor
Frequent Advisor

su - oracle...from root prompt

Hi guys,
When i do su - oracle from root prompt why does it ask me for passwd........???
System is rx4640...hpux 11i v2.......
3 REPLIES 3
Steven E. Protter
Exalted Contributor
Solution

Re: su - oracle...from root prompt

Shalom,

By default root is permitted to use the su or su - command and not be prompted for a password. You can edit pam configuration and change this.

Apparently this is exactly whats been done to your system. If you didn't do it someone else did.

su - oracle is the method used when root auto starts oracle databases at system startup. So long as root access is secure and only the sysadmin knows the password the follow is true:


SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com
jhingoor
Frequent Advisor

Re: su - oracle...from root prompt

Hi Steven,
So i need to edit the /etc/pam.conf file right...??..Thanks for ur prompt response.......
Steven E. Protter
Exalted Contributor

Re: su - oracle...from root prompt

Yes, you need to edit the /etc/pam.conf file.

Compare the file to a system that permits proper su login.

Here is an example:

#
# PAM configuration
#
# Authentication management
#
login auth required /usr/lib/security/libpam_unix.1
su auth required /usr/lib/security/libpam_unix.1
dtlogin auth required /usr/lib/security/libpam_unix.1
dtaction auth required /usr/lib/security/libpam_unix.1
ftp auth required /usr/lib/security/libpam_unix.1
OTHER auth required /usr/lib/security/libpam_unix.1
#
# Account management
#
login account required /usr/lib/security/libpam_unix.1
su account required /usr/lib/security/libpam_unix.1
dtlogin account required /usr/lib/security/libpam_unix.1
dtaction account required /usr/lib/security/libpam_unix.1
ftp account required /usr/lib/security/libpam_unix.1
#
OTHER account required /usr/lib/security/libpam_unix.1
#
# Session management
login session required /usr/lib/security/libpam_unix.1
dtlogin session required /usr/lib/security/libpam_unix.1
dtaction session required /usr/lib/security/libpam_unix.1
OTHER session required /usr/lib/security/libpam_unix.1
#
# Password management
#
login password required /usr/lib/security/libpam_unix.1
passwd password required /usr/lib/security/libpam_unix.1
dtlogin password required /usr/lib/security/libpam_unix.1
dtaction password required /usr/lib/security/libpam_unix.1
OTHER password required /usr/lib/security/libpam_unix.1


I can't tell you I know exactly which line in the configuration file needs to be edited.

SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com