HP-UX Secure Resource Partitions (SRP) A.02.01 Administrator's Guide

2
3.1 Using the srp_su Command ....................................................................................................... 23
3.2 Allowing Additional Users to Use the srp_su Command ................................................................ 23
3.3 Example: Using the srp_su Command to Login to the Target SRP .................................................... 23
4 Getting Started with SRP .................................................................................................................. 25
4.1Sample SRP Lifecycle ................................................................................................................. 25
4.1.2 Run Environment for the SRP Session .................................................................................... 25
Step 1: Setting Up SRP ................................................................................................................... 26
Step 2: Displaying Input Parameters for the base Template ................................................................ 26
Step 3: Creating a Base SRP Compartment ....................................................................................... 26
Step 4: Listing the Configuration Data .............................................................................................. 27
Step 5: Adding the sshd Template .................................................................................................... 28
Step 6: Listing the Configuration Data for the sshd Template .............................................................. 28
Step 7: Starting the SRP Compartment .............................................................................................. 29
Step 8: Getting SRP status information .............................................................................................. 30
Step 9: Replacing SRP Configuration Data ........................................................................................ 30
Step 10: Stopping the SRP Compartment .......................................................................................... 31
Step 11: Deleting the SRP Compartment ........................................................................................... 31
5 Using the SRP Environment ............................................................................................................... 32
5.1 Establising a User Session in the SRP .......................................................................................... 32
5.2 Managing SRP Startup and Shutdown Actions ............................................................................. 32
5.3 Deploying Applications in an SRP Environment ............................................................................ 33
5.3.1 Single Instance Applications ............................................................................................... 33
5.3.2 Multi-Instance Applications ................................................................................................. 33
5.3.3 Deploying Applications with the Application Templates ......................................................... 34
5.3.4 Ensuring access to application files located outside the SRP home directory .............................. 34
5.3.5 Best Practices for Application Deployment with SRP ............................................................... 34
6 Using the base Template ................................................................................................................ 36
6.1 Creating a Base SRP Compartment ............................................................................................ 36
6.1.1 The cmpt Service ............................................................................................................... 37
6.1.2 The admin Service ............................................................................................................ 38
6.1.3 The prm Service ................................................................................................................ 38
6.1.4 The network Service ........................................................................................................... 40
6.1.5 The init Service.................................................................................................................. 42
6.1.6 The login Service ............................................................................................................... 42
6.1.7 The ipfilter Service ............................................................................................................. 43
6.1.8 The ipsec Service .............................................................................................................. 45
6.1.9 Completing the Configuration ............................................................................................. 46
6.2 Replacing or Deleting Base SRP Data ......................................................................................... 47
7 Using the apache Template .............................................................................................................. 48
7.1 Adding the apache Template to an SRP Compartment .................................................................. 48
7.1.1 The cmpt Service .............................................................................................................. 48
7.1.2 The ipfilter Service ............................................................................................................. 49
7.1.3 The provision Service .................................................................................................... 50
7.2 Replacing or Deleting Apache SRP Data ..................................................................................... 52
8 Using the tomcat Template ............................................................................................................. 53
8.1 Adding the tomcat Template to an SRP Compartment ................................................................... 53
8.1.1 The cmpt Service ............................................................................................................... 53
8.1.2 The ipfilter Service ............................................................................................................. 54
8.1.3 The provision Service ......................................................................................................... 55
8.2 Replacing or Deleting Tomcat SRP Data ...................................................................................... 57
9 Using the custom Template ............................................................................................................... 58
9.1 Adding the custom Template to an SRP Compartment ................................................................. 58
9.1.1 The cmpt Service .............................................................................................................. 59
9.1.2 The ipfilter Service ............................................................................................................. 59
9.1.3 The provision Service ......................................................................................................... 60
9.2 Replacing or Deleting Custom SRP Data ...................................................................................... 60