Installing and Managing HP-UX Virtual Partitions (includes A.04.02)

How vPars and its Components Work
Security
Chapter 2
42
Security
You should be aware of the following security concerns:
The vPars commands (as described in “Monitor and Shell Commands” on page 93) are restricted to root
access, but the commands work on any of the virtual partitions, regardless of which partition the
commands are executed from. Therefore, a user on one partition can affect another virtual partition by
targeting the virtual partition in a vPars command. For example, a root user running on the partition
vpar2 can reset the partition vpar3 using the vparreset command.
A user with console access can gain access to the file systems on any of the virtual partitions in the hard
partition.
NOTE Additional Security Functionality
A.04.xx:
A white paper on using RBAC (Role-based Access Control) with vPars A.04.xx is available
on docs.hp.com.
A.03.03:
A new feature called Primary-Admin Virtual Partitions is available. For more information,
see the Chapter 10, “vPars Flexible Administrative Capability (vPars A.03.03 and vPars
A.04.02),” on page 245.