- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- enable a user for direct login to hp-ux
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 03:24 AM
тАО02-12-2010 03:24 AM
enable a user for direct login to hp-ux
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 04:08 AM
тАО02-12-2010 04:08 AM
Re: enable a user for direct login to hp-ux
how did you configur (that xyz) application user to not able to login via ssh directly ???
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 04:33 AM
тАО02-12-2010 04:33 AM
Re: enable a user for direct login to hp-ux
check in /etc/passwd , if not create a user on the server using useradd command or through SAM
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 04:35 AM
тАО02-12-2010 04:35 AM
Re: enable a user for direct login to hp-ux
You must be sure that this user have a valid account on your system.
Horia.
Horia.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 05:54 AM
тАО02-12-2010 05:54 AM
Re: enable a user for direct login to hp-ux
can you pls help me out , what may be configuration which i have to change.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-12-2010 07:29 AM
тАО02-12-2010 07:29 AM
Re: enable a user for direct login to hp-ux
Its pritty odd to find out how you orangisation has "configured your "oracle id (i.e xyz) to disable direct login, because as far as i know, i have done only for disable direct "root" login in server via (ssh_config) file.
it depends there are many ways you can disable "direct direct login for "specfic user id"
1) by ssh_config file,
2) Set the password field in /etc/passwd to "*" to disable login access to the oracle account than use sudo ,
For example, to log in as oracle:
/bin/sudo -u oracle
3) write script place under /etc/profile or /etc/csh.login to quick check & that terminates the shell if the $(logname) matches a list of restricted users
Choices :- you need check
1) You need thorugh check under (ssh_confif) file
2) check /etc/passwd for "*" for user account (xyz)
3) check any script in place to restrict direct login for (xyz) user /etc/profile or /etc/csh.login
we all would be clueless , if you d'not know the history how (your applicatio user id (xyz) has been configured to disable direct login)
Quick fix :-
1) Install sudo and you achive it
2) try to login direct using (Console login of that particular user (xyz)
Hope this Helps,
Thanks,
Johnson Punniyalingam.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-14-2010 11:32 AM
тАО02-14-2010 11:32 AM
Re: enable a user for direct login to hp-ux
Thanks for your findings, which tends to solution..Following are my findings..
1.There is no entry for xyz user in ssh_config
2.no enry /etc/csh.login
2.i found one script in /etc/profile which terminates xyz login.I have removed those lines of scripts .Still i am not able able to login using xyz.
When i am trying to login , after putting password, i am getting "Access denied"
If it is blocked by /etc/profile , this "Accesss Denied " shoild not come.
This system is TRUSTED MODE.
Is there any checks by systems before /etc/profile?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-14-2010 05:17 PM
тАО02-14-2010 05:17 PM
Re: enable a user for direct login to hp-ux
If it is blocked by /etc/profile , this "Accesss Denied " shoild not come.<<<
did you tried login directory via console of the
can post the command outputs
# finger
#/usr/lbin/getprpw -k
#/usr/lbin/modprpw -k
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-14-2010 09:44 PM
тАО02-14-2010 09:44 PM
Re: enable a user for direct login to hp-ux
I am not able to login thru console.following is the output which yu wanted
HOSTA:/>finger suadm
Login name: suadm
Directory: /home/suadm Shell: /usr/bin/sh
Last login Sun Feb 14 18:35 on console
New mail received Mon Feb 15 00:10:01 2010;
unread since Mon Feb 15 05:40:53 2010
No Plan.
HOSTA:/>/usr/lbin/getprpw suadm
uid=103, bootpw=NO, audid=56, audflg=1, mintm=-1, maxpwln=-1, exptm=-1, lftm=-1, spwchg=Mon Feb 15 04:55:52 2010, upwchg=-1, acctexp=-1, llog=-1, expwarn=-1,
usrpick=DFT, syspnpw=DFT, rstrpw=DFT, nullpw=DFT, admnum=-1, syschpw=DFT, sysltpw=DFT, timeod=-1, slogint=Mon Feb 15 05:40:53 2010, ulogint=Mon Feb 15 04:55:0
2 2010, sloginy=pts/1, culogin=-1, uloginy=-1, umaxlntr=-1, alock=NO, lockout=0000000
HOSTA:/>/usr/lbin/modprpw -k suadm
HOSTA:/>
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО02-15-2010 01:05 AM
тАО02-15-2010 01:05 AM
Re: enable a user for direct login to hp-ux
xyz user able to login directly.I made entry for xtz in the following file.
/etc/opt/ldapux/pam_authz.policy