home *** CD-ROM | disk | FTP | other *** search
- Xref: sparky comp.sys.sgi.admin:16 comp.security.misc:2267
- Path: sparky!uunet!olivea!sgigate!sgi!fido!eacces.wpd.sgi.com!schuman
- From: schuman@eacces.wpd.sgi.com (Aaron Schuman)
- Newsgroups: comp.sys.sgi.admin,comp.security.misc
- Subject: Re: [Q] C2 security or Shadow...
- Keywords: C2, NIS, security
- Message-ID: <1gl5olINN45n@fido.asd.sgi.com>
- Date: 15 Dec 92 17:48:05 GMT
- References: <1992Dec15.062659.7909@worak.kaist.ac.kr>
- Organization: Silicon Graphics 415-390-1901
- Lines: 25
- NNTP-Posting-Host: eacces.wpd.sgi.com
-
- jwjung> Does anybody know about C2 security on SGI?
- jwjung> (or shadow password mechanism which can go along with NIS...)
-
- Irix 5.0 will have shadow passwords and c2-style auditing
- as bundled (but configurable) features.
-
- C2 features are not available in Irix 4.0, but they can be
- found in Trusted Irix 4.0.4T, which is under consideration for
- the B1 evaluation class by the US National Computer Security
- Center.
-
-
- jwjung> But, as you know, the NIS without C2 has great security hole.
-
- NIS was designed without security in mind. Attempts to retrofit
- access protection to it have been haphazard and inadequate.
- I wouldn't recommend NIS as the administrative solution for
- anybody whose systems were facing a serious intrusion threat.
-
-
-
- Aaron
-
- .............................................................................
- Aaron Schuman 415-390-1901 schuman@sgi.com Silicon Graphics, Inc.
-