UNIX SECURITY

From: Min Oo Tint (min@psde.mec.mei.co.jp)
Date: Mon Apr 08 2002 - 09:31:34 EDT


Hi,

I would like to know the information on securing NIS on our Solaris 2.8
network ?

I started doing system admin with no relevant background but have
successfully setup NIS etc but was unable to secure few things such as, for
example.

If NIS server is called loki and all user account are located on loki -
/users and this /users is shared across other UNIX desktop.

I changed root password on loki and want the users to have admin privileges
for their machine but what I found is they can

su - and enter the local root password and become a root but they can su
<users> and become the <user> which should not be allowed but possible.

Can someone advice me on how to get prevent this without denying root access
to local machines?

Many thanks,

Min Oo

System LSI Design Engineer
Panasonic System LSI Design Europe (PSDE)
A Division of Matsushita Electric Europe (HQ) Ltd.

_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:24:10 EDT