home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.unix.aix
- Path: sparky!uunet!fsi-ssd!marke
- From: marke@fsi-ssd.csg.ssd.fsi.com (Mark W. Easter)
- Subject: Re: sendmail and NIS managed aliases problem
- Sender: marke@dev1.csg.ssd.fsi.com (Mark Easter)
- Message-ID: <MARKE.92Aug26101200@fsi-ssd.csg.ssd.fsi.com>
- In-Reply-To: mcr@csi.on.ca's message of Wed, 26 Aug 1992 03:20:28 GMT
- Date: Wed, 26 Aug 1992 15:12:00 GMT
- References: <Aug24.163707.29089@cdsac.uucp> <BtJG8z.xys@icsbelf.uucp>
- <Aug25.214914.26624@cdsac.uucp> <1992Aug26.032028.28597@csi.on.ca>
- Organization: FlightSafety-SSD, Tulsa, OK, USA
- Lines: 29
-
- >In article <1992Aug26.032028.28597@csi.on.ca> mcr@csi.on.ca (Michael Richardson) writes:
- >
- > 3.1 NIS also ``forgets'' to consult the local password file. If an
- > NIS server is not available, (like, because the network isn't there or
- > the interface becomes foobar for some reason) then you can't login at
- > all. Boot from tape. Moral: be very wary about letting 3.1.x machines
- > run ypbind...
-
- You should be able to overcome this by making the 3.1.x machine a
- client of itself.
-
- > >Token for AIX from O'Reilly & Assoc
- > >
- > >passwd +::0:0:: +:*:0:0:::
- > >group +: +:*:*
- > >aliases <none> +
-
- I believe the answer has to do with security and not just NIS.
- Placing "+:" or "+::" on many systems means that anyone can sign in to
- root as "+" with no password.
- --
-
- ---------------------------------------------------------------- /| -
- Mark W. Easter FlightSafety International / | /|
- Staff Engineer Simulation Systems Division -----------
- Computer Systems Group Broken Arrow, Oklahoma 74012 Flight \ |
- marke@fsi.com 918-251-0500 x596 Safety \|SSD
- "You wreck 'em - we'll rack 'em"
- ----------------------------------------------------------------------------
-