Enhanced security files migration from one system to another

From: John Galt (jgalt163@comcast.net)
Date: Mon Mar 29 2004 - 10:08:00 EST


Hello All,

I am having trouble migrating the TCB databases from one T64 v51.a system
to another system with the same version. The main difference between the
systems is that the system I am copying the files from is at patch kit 2
and the target system is at patch kit 5.

I have copied over the following files:
/tcb/files/auth.db
/var/tcb/files/auth.db
/etc/auth/system/default
/etc/passwd
/etc/group

I have removed the /etc/passwd.pag and /etc/passwd.dir files and used vipw
after copying the passwd file to recreate the hashed database.

I've verified that the ownership and permissions of all the copied files
matches the originals ( as well as matching the permissions on the source
system).

At this point, I can log in as root so I assume that the /tcb/files/auth.db
is functioning properly.

However, when I log in through telnet as a regular user, I get a message like:
"Can't rewrite protected password entry for user jsmith"

If I try to change a users password, I get a similar message:
"Password not changed: failed to write protected password entry"

I've done this before by simply copying the auth.db files, default, passwd,
and group files and it all worked properly.

What am I missing?

Thanks in advance.
John



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:49:55 EDT