beautypg.com

Network security, Accessing a file on a remote system, Establishing global user ids – HP NonStop G-Series User Manual

Page 341: Establishing remote passwords

background image

Managing Users and Security

Guardian User’s Guide 425266-001

16 -19

Network Security

Network Security

This subsection describes several basic security tasks for systems connected on a
network dealing with user access to files and processes.

Accessing a File on a Remote System

A user at system \WEST who wants to access a file (including a disk file, device, or
process) on system \EAST must satisfy the following requirements:

The user on system \WEST must also be established as a user on system \EAST.

The user must have matching remote passwords established at both system \WEST
and system \EAST.

If the file is a disk file, the user on system \WEST must have the authority to access
the file on system \EAST as a remote accessor.

Establishing Global User IDs

Each user is known to the local system by a user name and a user ID (for example,
ADMIN.BILL and 6,14). A user can access files on a remote system only if the user’s
user name and user ID are also known to remote system.

For example, if ADMIN.BILL, who is on system \WEST, wants to access a file on
remote system \EAST, the remote system must also have a user identified as
ADMIN.BILL with a user ID of 6,14. A super group user (user ID 255,255) or a group
manager at system \EAST must add ADMIN.BILL with the TACL ADDUSER
program.

Establishing Remote Passwords

After user IDs for network users are added to relevant systems on the network, remote
passwords must be established for each remote system. Remote passwords are specified
with the TACL REMOTEPASSWORD command or the RPASSWRD program.

For example, ADMIN.BILL (user ID 6,14) was added at systems \WEST and \EAST. At
system \WEST, these commands are entered to establish an allow-access remote
password to system \WEST:

The allow-access password for ADMIN.BILL for \WEST from all other systems is
SHAZAM.

At system \EAST, these commands are entered:

10> LOGON ADMIN.BILL

15> REMOTEPASSWORD \WEST, SHAZAM

10> LOGON ADMIN.BILL
11> REMOTEPASSWORD \WEST, SHAZAM

This manual is related to the following products: