Administrator's Guide

putspwent, 197
G
getacl command
viewing ACLs with, 97
getdvagent function, 197
getfilexsec command, 113, 132
getprdfent function, 197
getprocxsec command, 113, 132
getprpwent function, 197
getprtcent function, 197
getpwent function, 197
getspwent function, 197
group account
managing, 31
group ID (gid), 194
GSS-API
SSH, 80
guest account
monitoring, 30
H
HFS, 91
HFS ACL
and NFS, 103
commands and calls that work with, 93
compared with JFS ACL, 102
setting, 91
High Performance File System
See HFS, 91
history
password, 196
host-based authentication
and public key based authentication, 81
used by SSH, 81
HP-UX AAA Server (RADIUS), 203
HP-UX Bastille, 15, 25, 199
defined, 205
HP-UX Containers SRP, 200
HP-UX Directory Server, 204
HP-UX EVFS, 201
HP-UX HIDS, 199
HP-UX installation
installing security patches, 26
postinstallation security tips, 26
preventing security breaches during booting, 23
security considerations, 23
setting install-time security options, 25
HP-UX IPFilter, 200
HP-UX IPSec, 201
HP-UX LDAP-UX, 204
HP-UX RBAC
architecture, 149
auditing, 188
commands, 148
wrapping, 154
components, 146
configuration files, 147
configuring Compartments, 162
default user, 156
manpages, 148
operation, 150
troubleshooting, 168
HP-UX Secure Shell, 202
HP-UX Security Patches, 200
HP-UX TCS, 202
I
IKE (Internet Key Exchange)
protocol, 207
inetd daemon
overview of, 70
securing, 71
TCP wrappers and, 72
Install-Time Security, 25
installing HP-UX
installing security patches after, 26
postinstallation security tips, 26
preventing security breaches during booting, 23
security considerations, 23
setting install-time security options, 25
installing security patches
using Software Assistant, 26
Internet daemon
See inetd daemon, 70
Internet Services, 67
overview of, 67
IPSec policy
definition, 208
J
JFS, 91
JFS ACL
and NFS, 103
changing with setacl command, 100
compared with HFS ACL, 102
example of changing a minimal, 98
setting, 95
using default entries, 99
Journaled File System
See JFS, 91
L
last command
examples of using, 33
LDAP directory server
securing passwords stored in, 46
lifetime
password aging, 195
log file
audit, 179
logical volume
215