LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-11-2003, 07:03 PM   #1
kyle292002bro
LQ Newbie
 
Registered: Dec 2003
Location: Cali
Distribution: ohhh
Posts: 3

Rep: Reputation: 0
linux+yp /etc/nologin. How to exclude some users?


Guys,

I have linux box with yellow pages /etc/nsswitch.conf ....etc.
Everything works just fine.

Now, I would like to disable ALL logins except user PENGUIN

I put /etc/nologin, played with /etc/login.access, BUT no luck...

/etc/nologin - will disable ALL logins, BUT I would like to keep PENGUIN
(within yp of cource) off the list

Any input/ideas are welcome!
 
Old 12-15-2003, 05:51 AM   #2
verigoth
Member
 
Registered: May 2002
Posts: 179

Rep: Reputation: Disabled
/etc/login.access:

-:ALL EXCEPT penguin:READ BELOW
"The third field should be a list of one or more tty names (for non-networked logins), host names, domain names (begin with "."), host addresses, internet network numbers (end with "."), ALL (always matches) or LOCAL (matches any string that does not contain a "." character). If you run NIS you can use @netgroupname in host or user patterns"

quoted from login.access manpage

verigoth
 
Old 12-16-2003, 07:53 PM   #3
kyle292002bro
LQ Newbie
 
Registered: Dec 2003
Location: Cali
Distribution: ohhh
Posts: 3

Original Poster
Rep: Reputation: 0
Quote:
Originally posted by verigoth
/etc/login.access:

-:ALL EXCEPT penguin:READ BELOW
"The third field should be a list of one or more tty names (for non-networked logins), host names, domain names (begin with "."), host addresses, internet network numbers (end with "."), ALL (always matches) or LOCAL (matches any string that does not contain a "." character). If you run NIS you can use @netgroupname in host or user patterns"

quoted from login.access manpage

verigoth
Thanks!

Yes, I tried /etc/login.access...no luck.

I should use @netgroupname within YP, but I'm not sure about
the format within YP and /etc/nsswitch.conf (like passwd compat?)
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
SARG exclude users myheart Linux - Security 3 06-07-2010 02:46 AM
tar --exclude --exclude-from cefn Linux - Software 4 10-11-2005 07:31 PM
nologin oddity prn Linux - Security 2 04-22-2005 05:01 PM
shutdown -h now and /etc/nologin yull Linux - General 4 12-15-2004 07:42 AM
/sbin/nologin tyccea Red Hat 2 10-22-2003 07:56 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 09:13 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration