Operating System - HP-UX
1832202 Members
2677 Online
110039 Solutions
New Discussion

Tool to identify vulnerabilities issues and to harden security system on HPUX 11v3

 
Yaboto
Super Advisor

Tool to identify vulnerabilities issues and to harden security system on HPUX 11v3

Hi,

Please, what tool can i use to identify vulnerabilities issues and security loop holes in my HPUX 11i version 3.1.

How to harden so much the security system for HPUX 11v3 without disrupting critical application and services?

Regards,

Yaboto 

1 REPLY 1
Bill Hassell
Honored Contributor

Re: Tool to identify vulnerabilities issues and to harden security system on HPUX 11v3

Duplicate post...

In addition to recommendations in your previous post:
https://community.hpe.com/t5/Patches/Patch-assessment-for-resolving-Vulnerability-issue-on-hp-ux-11i/m-p/6963093#M15980
you can also run bastille (/opt/sec_mgmt/bastille/bin/bastille).

You asked: ...without disrupting critical application and services?...

Any changes to the system (patches, services, settings) could possibly affect applications. As far as services, one of the many sysadmin functions is to inventory what is required for the current environment. For instance, patches to system libraries may affect a running database which could require relinking. An update to Java could affect a web page application.

You also asked: ...harden my system..

Again, to what environment? Will this system be accessed by multiple users on the Internet? Is this system behind an enterprise level firewall maintained by senior network administrators? Or will this system be unprotected by a business class firewall and must manage security completely on its own (never recommended without the help of a senior security admin). I would enlist the help of a credentialed security consultant familiar with HP-UX to properly handle the task.



Bill Hassell, sysadmin