LinuxQuestions.org
Review your favorite Linux distribution.
Go Back   LinuxQuestions.org > Forums > Other *NIX Forums > Solaris / OpenSolaris
User Name
Password
Solaris / OpenSolaris This forum is for the discussion of Solaris, OpenSolaris, OpenIndiana, and illumos.
General Sun, SunOS and Sparc related questions also go here. Any Solaris fork or distribution is welcome.

Notices


Reply
  Search this Thread
Old 01-21-2009, 06:33 AM   #1
Asteroid
LQ Newbie
 
Registered: May 2007
Posts: 27

Rep: Reputation: 15
Solaris user Security implementation


Hi gurus,

Need you help here:
How we can implement

  • [1]
    Code:
    User logout After 15 mins of inactivity.
I have edited /etc/default/login as TIMEOUT=60
But user is not Logged out after 60 sec inactivity. How we can implement this?

  • [2]
    Code:
    LOGIN should be blocked after Max logins attempts
E.g 3 bad passwords and the user is locked. And it is locked for certain period e.g 20 min.

  • [3]
    Code:
    Last 10 passwords are unique
The Passwords selected by User must not match his previous passwords (up to last 10 password).
  • [4]
    Code:
    Password selection must be atleast one char from lower, upper, numeric and special chars.
Password selection is forced to be exactly a regular expression having all above chars.

We have to enforce the security on SUN machine, by implementing above conditions.
Any help will be appriciated.
Thanks and Regards
@Asteroid
 
Old 01-21-2009, 08:34 AM   #2
crisostomo_enrico
Member
 
Registered: Dec 2005
Location: Madrid
Distribution: Solaris 10, Solaris Express Community Edition
Posts: 547

Rep: Reputation: 36
I'm not an expert in this field so it's better if you wait for somebody with the proper knowledge to answer your question.

My two cents: take into account that different backends where you store users' info may implement some of the functionality you require and you are not specifying where you plan to manage such information. I mean, are you using local files (/etc/passwd, etc.), NIS/NIS+ or LDAP? In my site, we're using an LDAP implementation (Sun's Java Directory Server) and it provides us with some of the functionality you're planning to implement, such as password complexity requirements.

Waiting for somebody else to answer your question, could you please detail the information you need?

As far as it concerns the TIMEOUT value, it's just not what you mean. The TIMEOUT is:
Quote:
Number of seconds allowed for logging in before a timeout occurs.
Bye,
Enrico.
 
Old 01-21-2009, 10:37 PM   #3
Asteroid
LQ Newbie
 
Registered: May 2007
Posts: 27

Original Poster
Rep: Reputation: 15
@crisostomo_enrico
Thank you for the reply, in fact we are using local files to hold the security policy.
 
Old 01-24-2009, 10:45 AM   #4
as400
Member
 
Registered: Apr 2004
Location: USA
Distribution: Solaris 10 (x86) and Windows XP Pro SP2
Posts: 596

Rep: Reputation: 30
You can probably implemment this policy through the Solaris Management Console.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
user level TCP stack implementation sumati01 Linux - Networking 2 05-14-2007 04:04 PM
NSAPI Filter implementation on Solaris running on sparc barkhashah Solaris / OpenSolaris 9 10-13-2004 03:36 AM
linux security implementation klog2_k Linux - Security 3 07-17-2003 09:56 AM

LinuxQuestions.org > Forums > Other *NIX Forums > Solaris / OpenSolaris

All times are GMT -5. The time now is 03:12 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration