<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Tech-Recipes &#187; Solaris security</title>
	<atom:link href="http://www.tech-recipes.com/category/unix/solaris/solaris-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.tech-recipes.com</link>
	<description>Computer and technology tutorials and guides</description>
	<lastBuildDate>Thu, 09 Feb 2012 21:32:22 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Solaris: create ssh keys for quick server logins</title>
		<link>http://www.tech-recipes.com/rx/1870/solaris_create_ssh_keys_for_quick_server_logins/</link>
		<comments>http://www.tech-recipes.com/rx/1870/solaris_create_ssh_keys_for_quick_server_logins/#comments</comments>
		<pubDate>Mon, 20 Nov 2006 20:46:45 +0000</pubDate>
		<dc:creator>mcdsco</dc:creator>
				<category><![CDATA[Solaris security]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[To make access to both servers easier, I created keys for ssh, so I can shell server to server with no password.  Following the steps in this Tech-Recipe will make it possible to login to one system from another painless.

To create and distribute the SSH key, follow these steps:
# cd ~/.ssh

(if it doesn&#8217;t exist [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/1870/solaris_create_ssh_keys_for_quick_server_logins/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Prevent Solaris users from changing file ownership (chown)</title>
		<link>http://www.tech-recipes.com/rx/498/prevent-solaris-users-from-changing-file-ownership-chown/</link>
		<comments>http://www.tech-recipes.com/rx/498/prevent-solaris-users-from-changing-file-ownership-chown/#comments</comments>
		<pubDate>Mon, 05 Jul 2004 16:01:59 +0000</pubDate>
		<dc:creator>qmchenry</dc:creator>
				<category><![CDATA[Solaris security]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Users are typically able to change the owner of a file that they own.  If you consider this a security risk or would like to prevent users from doing this for other reasons, follow the instructions in this recipe.

To prevent users from changing the ownership of their files, add the following line (or change [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/498/prevent-solaris-users-from-changing-file-ownership-chown/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Add BANNER information in Solaris</title>
		<link>http://www.tech-recipes.com/rx/229/adding-banner-information-in-solaris/</link>
		<comments>http://www.tech-recipes.com/rx/229/adding-banner-information-in-solaris/#comments</comments>
		<pubDate>Mon, 17 Nov 2003 03:56:25 +0000</pubDate>
		<dc:creator>indianboy</dc:creator>
				<category><![CDATA[Solaris security]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[UNIX]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Many tools on the net help to find the OS and the version of the OS that is used. This is a widely used strategy to open a connection to the server and have add it. This strategy can be used to defend against tools which use the banner grabbing strategy to identify systems.  [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/229/adding-banner-information-in-solaris/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Configuring C-2 Level Security in Solaris</title>
		<link>http://www.tech-recipes.com/rx/223/configuring-c-2-level-security-in-solaris/</link>
		<comments>http://www.tech-recipes.com/rx/223/configuring-c-2-level-security-in-solaris/#comments</comments>
		<pubDate>Wed, 12 Nov 2003 01:28:15 +0000</pubDate>
		<dc:creator>indianboy</dc:creator>
				<category><![CDATA[Solaris security]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[UNIX]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[According to the Orange Book , the operating system security is evaluated and categorised into different levels such as D, C1, C2, B1 etc.  Normally all operating systems in the market tend to have the C1 level of security while Trusted Solaris 8 is B-level certified.  While Solaris OE comes with C1 certification, [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/223/configuring-c-2-level-security-in-solaris/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Log all Telnet and FTP Connections to a Solaris Machine</title>
		<link>http://www.tech-recipes.com/rx/175/to-log-all-telnet-ftp-connections-to-a-solaris-machine/</link>
		<comments>http://www.tech-recipes.com/rx/175/to-log-all-telnet-ftp-connections-to-a-solaris-machine/#comments</comments>
		<pubDate>Fri, 10 Oct 2003 02:41:16 +0000</pubDate>
		<dc:creator>indianboy</dc:creator>
				<category><![CDATA[Solaris security]]></category>
		<category><![CDATA[ftp]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[telnet]]></category>
		<category><![CDATA[UNIX]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[By default, the solaris inetd deamon does not log the IP address of the machines that are connecting to Solaris Server. To enable the logging of all the IP addresses of machines connecting to the server and the connection time, the following script can be used.

1. cd /etc/init.d
2. vi inetsvc
3. Change the last line in [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/175/to-log-all-telnet-ftp-connections-to-a-solaris-machine/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>RBAC: Solaris Role Based Access Control basics</title>
		<link>http://www.tech-recipes.com/rx/140/rbac-solaris-role-based-access-control-basics/</link>
		<comments>http://www.tech-recipes.com/rx/140/rbac-solaris-role-based-access-control-basics/#comments</comments>
		<pubDate>Fri, 03 Oct 2003 13:25:48 +0000</pubDate>
		<dc:creator>qmchenry</dc:creator>
				<category><![CDATA[Solaris security]]></category>
		<category><![CDATA[access control]]></category>
		<category><![CDATA[basics]]></category>
		<category><![CDATA[RBAC]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[UNIX]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[Solaris 8 and 9 have a powerful, integrated mechanism originally available only in trusted environments.  Role based access control (RBAC) implements an authorization system based on least privilege.  In this model, multiple administrative roles can be created and associated with users such that an individual has only the access necessary to perform their [...]]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/140/rbac-solaris-role-based-access-control-basics/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
		<item>
		<title>Change the Solaris telnet banner</title>
		<link>http://www.tech-recipes.com/rx/59/change-the-solaris-telnet-banner/</link>
		<comments>http://www.tech-recipes.com/rx/59/change-the-solaris-telnet-banner/#comments</comments>
		<pubDate>Mon, 15 Sep 2003 00:00:00 +0000</pubDate>
		<dc:creator>qmchenry</dc:creator>
				<category><![CDATA[Solaris security]]></category>
		<category><![CDATA[Solaris]]></category>
		<category><![CDATA[telnet]]></category>

		<guid isPermaLink="false">guid-fix-me!</guid>
		<description><![CDATA[The default banner displayed during a telnet login contains the Solaris version which can be useful to a potential attacker.

Create a plain text file called /etc/default/telnetd which contains a line such as:
BANNER="Unauthorized access prohibited\n\n"
The \n characters encode blank lines.
]]></description>
		<wfw:commentRss>http://www.tech-recipes.com/rx/59/change-the-solaris-telnet-banner/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached (User agent is rejected)
Database Caching 3/13 queries in 0.877 seconds using memcached
Object Caching 483/520 objects using memcached

Served from: www.tech-recipes.com @ 2012-02-10 02:07:14 -->
