Blogs Classifieds Downloads FlashChat Gallery Googlemap Invite Friends Links Projects Reviews Wiki
 


Welcome to the pSeries Tech Forums, our free peer-based support site for administrators, engineers and architects working with IBM pSeries servers and software.

You are currently viewing our site as a guest which gives you limited access to view most discussions, articles, tutorials and access our other free features. By joining our community you will be able to collaborate with administrators, engineers and architects charged with designing, delivering or maintaining IBM pSeries server environments.

Founded by a recognized IBM pSeries consultant and IBM Redbook author, pSeries Tech Forums was developed with the single mission of bringing IBM pSeries professionals together into a single self-help community.

Registration is fast, simple and absolutely free to all IT professionals with responsibility for or interest in IBM pSeries servers. We invite you to join our community today!

If you have any problems with the registration process or your account login, please contact contact support.

Our Sponsors
Want to advertise?  


Reply
 
LinkBack Thread Tools
  #1  
Old April 12th, 2007
jperret's Avatar
jperret Offline
Junior Member
 
Join Date: June 2006
Posts: 4
Question rlogin for particular hostname

I have high level application accounts (i.e. oracle)that I normally do not alow user to directly log into. They must first login with their personal account and su to these application accounts. This way I have a record (via su) as to who is using these accounts.

But now we have come across a need for a user to directly login in using these accounts. Is there a way to turn on and off the rlogin=true/false depending on the hostname of the user who wishes to connect.

This looks like a need for a homegrown secondary authentication method.

Any ideas?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #2  
Old April 13th, 2007
rydekull's Avatar
rydekull Offline
Junior Member
 
Join Date: October 2006
Posts: 28
Re: rlogin for particular hostname

I have found that it very seldom is a need for a login directly to a group/applicationaccount, mostly it's just a convenient matter or lack of knowledge matter.

If there however absolutely positively must be a need it can more or less always be dealt with sudo, as we currently have as the best method to offer something similiar to a RBAC solution.

And, if it's only for a short while, open it up, say go ahead, turn it off the next day/in a few hours/in 5 minutes.
__________________
---
Rydekull
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
  #3  
Old April 23rd, 2007
kinay61's Avatar
kinay61 Offline
Junior Member
 
Join Date: April 2007
Posts: 19
Re: rlogin for particular hostname

To change the value of rlogin for the user toto, you can do
chuser toto rlogin='false' / chuser toto rlogin='true'
but I don't see how you can use this command before the user connect.

You can use the file '/etc/hosts.equiv' or $Home/.rhosts
to specify the hosts or/and the user which can do a rlogin
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit! Wong this Post!
Reply With Quote
Reply

Bookmarks

These are the 100 most searched terms
Search Cloud
0042-001 0042-001 nim 0513-001 the system resource controller daemon is not active 0513-001 the system resource controller daemon is not active. 0514-061 0514-061 cannot find a child device 0514-061 cannot find a child device. 0516-787 0516-787 extendlv 0516-787 extendlv: maximum allocation for logical volume 110000ac aa00e1f3 aio aix aix aio aix freeware aixif_arp_dup_addr b150f22a b181fb53 ba010004 c1001020 d133c002 dacnone dcb47997 dlpar fcp_array_err6 fget_config gnu tar aix gsclvmd gtar aix hi yall hmc root password hmc vmware hscl05db ibm p6 ibm p6 520 libpopt aix libpopt.a libpopt.a(libpopt.so.0) is needed by rsync-2.6.2-1 migratelv mksysb navisphere agent nim server pseries pseriestech rsync aix sc_disk_err4 scan_error_chrp vio server websm xhost file ... powered by Simple Search Cloud


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Loss of hostname derek pSeries - System p 1 January 21st, 2007 23:15



Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0
Powered by vbWiki Pro 1.3 RC5. Copyright ©2006-2007, NuHit, LLC

vBulletin Skin developed by: vBStyles.com


1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48