- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Re: HPUX Security
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-06-2000 07:52 AM
07-06-2000 07:52 AM
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-06-2000 08:02 AM
07-06-2000 08:02 AM
Re: HPUX Security
A couple of good books are:
Practical UNIX & Internet Security - O'Reilly
Halting the Hacker - Prentice Hall
A good place to start wouls be to switch your system to a "trusted system" via SAM.
Also, read up on inetd.sec the inet daemon security file.
i.e. man inetd.sec
Brian
<*(((>< er
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-06-2000 08:10 AM
07-06-2000 08:10 AM
Solution- Disable Unused services
- setup /var/adm/inet.sec to limit what is allowed in/out and from/to where
- If possible disable telnet/ftp and use ssh/sftp instead
- check http://www.cert.org for recent security advisories (also http://www.nipc.gov)
- get the latest patch bundles and install (http://software.hp.com)
- if you do not already have a firewall, you might want to install some sort of firewall software to protect the rest of your network
- visit http://www.sans.org for some tips on system security
- checkout the hp docs http://docs.hp.com/hpux/internet/ for more on internet and security
Good luck
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2000 04:41 AM
07-07-2000 04:41 AM
Re: HPUX Security
There is much to learn and the book is excellent.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2000 09:57 AM
07-07-2000 09:57 AM
Re: HPUX Security
Optimising your Web Server with HP-UX (H4291S)
This is based on Apache, and includes both security and performance issues.
Worth a look, keep checking the HP web site for details: http://education.hp.com/
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-08-2000 10:14 AM
07-08-2000 10:14 AM
Re: HPUX Security
try to get the HP document "Administering Your HP-UX Trusted System",
HP Prt No. B2355-90121, First Edition August 1996.
This is about "trusted systems", ie. after having run "tsconv" on your HP-UX box.
To get back to to "not so trusted system" there is the undocumented option "-r"
to that command... ;-)
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-26-2000 07:19 AM
07-26-2000 07:19 AM
Re: HPUX Security
I don't know what kind of website you are going to install or what it will be doing. If so, you could check the site www.hp.com/security for the HP Virtual Vault solution. It's a dedicated and highly specialised variation of HP-UX called VVOS (or HP-UX 10.24) which is a segmented type of Unix to give to a very high level of security. At the moment it is mainly used by banks. However, it should be used on a machine operating as a front-end.
Maarten van Maanen
Netherlands
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
08-04-2000 05:27 AM
08-04-2000 05:27 AM
Re: HPUX Security
And finally, before you do anything else...if you don't have a firewall up than you need to take a look at your /var/adm/inetd.sec file. If you don't have a 'good' firewall up you need to start shutting down some doors till you get things in place. The file has info in it. Then take a look at your /etc/rc.config.d/netdaemons file and turn on inetd="-l" so you can log everything acessing your system. Then recycle your inted by keying /usr/sbin/inetd -c. You'll make points when you start seeing what unauthorized access you've been able to stop at the box.
And last go get those books and start reading......
Regards,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
01-19-2001 07:59 AM
01-19-2001 07:59 AM
Re: HPUX Security
I have been to that hpux open
source porting and archive site,
but see no reference to SSL or
sftp. Can someone send pointers?
Also, I'd like info about running
in trusted mode with Service Guard,
and or other stuff ?
Please reply here, but if possible,
copy to glbny@yahoo.com (thanks).