RBAC and audit administration
From: Roland Crüsemann (cruesemann@trustcenter.de)Date: 11/16/01
- Previous message: dbell: "RE: Security for SUN-Cluster 3.0/2.2 with OPS (8.1.7)"
- Next in thread: Darren Moffat: "Re: RBAC and audit administration"
- Reply: Darren Moffat: "Re: RBAC and audit administration"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Message-Id: <4.3.2.7.2.20011116164213.00b8a950@mail> Date: Fri, 16 Nov 2001 17:02:15 +0100 To: focus-sun@securityfocus.com From: Roland Crüsemann <cruesemann@trustcenter.de> Subject: RBAC and audit administration
Hello,
first of all thanks for the help with the "Switching audit files under
Solaris 8 via cron" problem.
It was indeed caused by ssh. Doing it via the console or using the
"UseLogin yes" option
solved the problem.
I was playing with RBAC. For this reason I set up an account "audit" with
the following
entry in /etc/user_attr:
audit::::type=normal;profiles=Audit Control,All
If I understood RBAC correctly, it should be possible for the user audit to use
the program /usr/sbin/audit.
But executing the command
% audit -n
as audit gives
audit: not super-user
----------
Roland Crüsemann Tel.: 040 / 80 80 26 210
TC TrustCenter AG Fax.: 040 / 80 80 26 126
Sonninstr. 24 -
28 mailto:cruesemann@trustcenter.de
D-20097 Hamburg http://www.trustcenter.de
Germany
- Previous message: dbell: "RE: Security for SUN-Cluster 3.0/2.2 with OPS (8.1.7)"
- Next in thread: Darren Moffat: "Re: RBAC and audit administration"
- Reply: Darren Moffat: "Re: RBAC and audit administration"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|
|