- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Security Concern
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Forums
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-04-2007 12:26 AM
12-04-2007 12:26 AM
I like to have the following to be done on my server:
Information to be logged
- Login Successes and Failures
- Addition / Deletion / Modification of Users
- Changes to Security Settings
- Changes to Logging and Auditing Settings
- Service Access Logs e.g. FTP, Telnet, SSH etc
Login Control
After successful login, every user must be given information reflecting the last login time, date and details of any unsuccessful login attempts since the last successful login.
Terminal Timeout
Inactive Terminal Session (Telnet, SSH, tty, vty, sessions) must be set to a timeout of 15 minutes
any response is highly appreciated
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-04-2007 01:10 AM
12-04-2007 01:10 AM
Re: Security Concern
It is already logged in wtmp files and you may use "last" command to see when a particular user was logged in.
>>>Inactive Terminal Session
there is a variable TMOUT you can set it to according to your requiredment.
>>>Addition / Deletion / Modification of Users
M not sure about any tools but you can write a script which will tell you whenever thers is some modification in /etc/passwd file.
I suppose you need some tool or you'll have to wrie script for each.
BR,
Kapil
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-04-2007 01:37 AM
12-04-2007 01:37 AM
Re: Security Concern
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-04-2007 02:16 AM
12-04-2007 02:16 AM
Re: Security Concern
for logging FTP logs that is incoming and outgoing FTP file transfers, insert the-i and -o options with the ftp entry in the /etc/inetd.conf file. like this:
ftpd -a -l -d -i -o
The logs will be saved into /var/adm/syslog/xferlog.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-04-2007 02:55 AM
12-04-2007 02:55 AM
SolutionDid u convert your system in trusted mode. You can do your queried security concern in trusted system
- Login Successes and Failures
If trusted you can get message
- Addition / Deletion / Modification of Users
If u use SAM to do so you have sam.log to view
- Changes to Security Settings
its in trusted system
- Changes to Logging and Auditing Settings
you can do also in trusted system
- Service Access Logs e.g. FTP, Telnet, SSH etc
you can view the syslog.log to view such like messages if your syslog process has entry for this services
-Login Control
if your system in trusted mode user can also see the message of successful and unsuccessful logins
Terminal Timeout
for telnet edit file in /etc/default/security
and for other terminal use their individual configuration files
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-05-2007 04:31 AM
12-05-2007 04:31 AM
Re: Security Concern
http://docs.hp.com/en/B2355-90950/ch08.html
This will help.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
12-05-2007 08:02 AM
12-05-2007 08:02 AM
Re: Security Concern
you can also use SAM's auditing. For system calls and other command.
sp,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-28-2008 10:48 PM
03-28-2008 10:48 PM