Security Management Guide (G06.29+, H06.08+, J06.03+)
Safeguard System Security
Security Management Guide — 522283-021
3 - 2
Preliminary Preparation
Preliminary Preparation
Install or update the Safeguard software according the instructions in the Safeguard
Administrator’s Manual
Before you start using Safeguard features, perform the tasks described in the following
subsections.
Read the Safeguard Manuals
Read the Safeguard manuals to become familiar with the product’s features before you
use them to secure your system. Let your security policy guide you in determining
which features to use.
Remove ADDUSER, DELUSER, and RPASSWRD
The Safeguard software provides its own means for adding and deleting users. In
addition, it allows you to administer users and to specify certain attributes relevant in
the OSS environment. It also allows you to set remote passwords for network users.
Remove the Guardian ADDUSER, DELUSER, and RPASSWRD programs so these
actions can be controlled only through SAFECOM commands. You cannot use
ADDUSER and DELUSER while Safeguard is running.
Convert the USERID File
If you are installing the Safeguard software for the first time or if you are upgrading
from a Safeguard product version prior to C22, you need to change the size of the
USERID file. To convert the USERID file, refer to the Safeguard Administrator’s
Manual.
Copy SYSnn Subvolume Authorization Record
If you have a subvolume authorization record on your previous SYSnn subvolume, you
need to add your new SYSnn (created during INSTALL) to the Safeguard database.
For example, if your previous SYSnn was SYS04 and your current SYSnn is SYS05,
issue this command:
1> SAFECOM ADD SUBVOLUME $system.sys05, LIKE $system.sys04
Issue this command immediately before the REST
SYS phase of INSTALL.
This step is necessary only if you intend to protect your SYSnn subvolume with a
Safeguard authorization record. For more information, see Securing Subvolumes on
page 3-15.