Is your e3000 Environment Secure? Homestead security

page 51April 24, 2003
Is Your Homestead Secure? - Solution Symposium West
Anybody can do :LISTFILE @.@.@ to see all
MPE-namespace files
:LISTFILE exposes account names, group names, and file
names even if you do not have access rights
Descriptive names can be valuable information to a
hacker
Limit access to the CI prompt and the ability to execute
CI commands
HFS directories can be used in conjunction with POSIX
security to prevent unauthorized users from viewing the
contents below