Security, Performance, and Accounting Administration
검색에만이 책은
PDF로 이 문서 다운로드

Index

A

absolute mode
.....about30
.....setting permissions with38
accounting
.....overview165
.....billing users177
.....data collection files188
.....fixing corrupted files175
.....setting up168
.....summary of commands191
.....summary of procedures170
.....turning on and off169
accounting programs172 to 175
.....acctcom187
.....dodisk167
.....runacct177
admind daemon52, 55
Administration Tool49
.....security policy55
.....setting up for DES security67
.....setting up initial security57
admintool, SeeAdministration Tool
aliases file
.....example of100
.....naming86
.....used by ASET83
ASET
.....See alsoASET files, ASET reports,ASET tasks
.....configuring84
.....environment variables91
.....error messages217
.....network operation88
.....processes75
.....reports81
.....restoring the system87
.....running interactively89
.....running periodically91
.....scheduling86
.....security levels75, 89
.....setting options91
.....starting up74
.....using with NFS88
.....working directory89
aset command74
ASET files82
.....aliases file83
.....checklist files83
.....configuration files84
.....examples of98
.....master files83
.....tune files83
ASET reports
.....table of81
.....collecting88
.....collecting on a server93
.....directory structure80
.....files format81
.....managing93
ASET tasks
.....table of81
.....eeprom check78
.....environment check78
.....firewall78
.....set system files permissions76
.....system configuration files check77
.....system files checklist76
.....user/group checks77
aset.restore utility87
at command105
AUTH_DES authentication62
AUTH_KERB authentication63
authentication50
.....DES46, 62
.....KERB63, 71
authorization50
Automated Security Enhancement Tool,See ASET

B

buffer cache parameters194
buffers
.....activities reported bysar138
.....changing size of108

C

cache flushing statistics reported byvmstat128
chargefee command177
checklist task
.....defining directories85
.....files checked83
chgrp command38
chkey command62
chmod command38
chown command38
commands
.....aset74
......at105
......chgrp38
......chmod38
......chown38
......df131
......dispadm205
......groupadd37
......iostat130
......kdestroy47, 66, 72
......keylogin59
......kill118
......kinit47, 64, 72
......klist64
......ksrvrtg64
......netstat159
......nfsstat161
......nice118
......nisaddcred59
......ping157
......priocntl120, 205
......ps113
......rlogin43
......sar135
......snoop159
......spray158
......timex105
......umask33
......vmstat127
common key46
configuration files
......checked by ASET77
......used to configure ASET84
conversation key69
CPU performance105
CPU utilization
......checking withsar150
......reported byvmstat128
cred database47, 59
credential table70
credentials52

D

data collection utility,Seesadc133
data collection, automating154
Data Encryption Standard,SeeDES
delete permission
.....for a directory27
.....for a file26
DES authentication46, 47
.....for Administration Tool67
.....mounting files62
.....sharing files62
DES security52
.....for an NIS client61
.....for an NIS+ client59
df command131
directory permissions27
discounts for non-prime time users178
disk
.....activity reported bysar140
.....activity reported byvmstat127
.....available space131
.....I/O106
.....slowdowns106
dispadmin command205
distributed administrationframework50, 55
dodisk program167

E

eeprom, checked by ASET78
encrypting files34
encryption46
environment variables
.....checked by ASET78
.....using to set ASET options91
error messages215 to 220
/etc/dfs/dfstab file49
/etc/hosts.equiv file44
/etc/nsswitch.conf file8, 53
/etc/passwd file9, 10
/etc/publickey file47, 69
/etc/system file194, 207
execute permission
.....for a directory27
......for a file26

F

faults reported byvmstat128
file access
......controlling48
......reported bysar137
......security of26
......understanding26
file permissions
......displaying35
......set by ASET76
......table of26
file systems
......sharing49
......trouble shooting106
file table status reported bysar151
files
......encrypting34
......types of27
firewall machines4
......checked by ASET78
fonts, in this manualxx

G

gateway, See firewall machines
global priorities
......initial settings207
......set by the scheduler206
global security policy56
groupadd command37
groups, how to create37

I

identities, setting51
identity mapping55
index ID71
interprocess communication, checkingwithsar145
interrupt rates reported byvmstat128
iostat command130

K

KDC,See key distribution center
kdestroy command47, 66, 72
kerbd71
Kerberos47
.....acquiring a ticket for root63
.....destroying tickets66
.....listing tickets64
.....logging into64
Kerberos authentication48
.....implementing71
.....sharing file systems with62
kernel memory allocation, checking withsar143
kernel memory allocator143, 144
kernel mode parameter table214
kernel parameters109, 193, 208
.....changing the value of194
.....tunable193
key distribution center72
key, how to create for an NIS user61
keylogin command59, 69
keyserv command69
keyserver program69
kill command118
kinit command47, 64, 72
klist command64
KMA,Seekernel memory allocator143
ksrvrtgt command64

L

local security policy56
logins
.....create log file20
.....display status of19
.....maintaining a log of15
.....restricting access8
.....unsuccessful15
.....with no password19

M

master files, used by ASET83
maxclsyspri208
maxusers109
memory
......management107
......reporting free memory pages149
......statistics reported byvmstat127
memory leak143, 144
monitoring performance108
msgsys parameters196

N

naming service53, 56
netid55
netstat command159
network collisions, checking withnetstat159
newkey command61
NFS data, displaying withnfsstat162
NFS system46
nfsstat command161
nice command118
NIS password database9
NIS+
......cred database47, 59
......publickey database47
nisaddcred command59
nobody identity51
nobody permission49

O

octal mode, setting permissions with30

P

pacct file187
packet smashing43
packets
......calculating packet error rate159
......testing withspray158
page faults146
paging activity
.....reported bysar142, 146
.....reported byvmstat127
parameters
.....buffer cache194
.....kernel208
.....scheduler configuration207
.....streams195
.....ufs filesystem195
passwords
.....aging10, 18
.....changing10
.....dial-up11, 22
.....displaying status of18
.....how to change16
.....in NIS database9
.....in NIS+ database10
.....selecting8
perfmeter,See Performance Meter
performance
.....about103
.....monitoring108, 126
.....of system resources104
Performance Meter132
permissions
.....assigning in absolute mode38
.....assigning in symbolic mode29, 39
.....changing withchmod28
.....for shared file systems48
ping command157
priocntl command120, 205
priorities
.....andnice118
.....designating withpriocntl121
.....fixed117
.....global206
.....of real-time processes209
.....of timeshare processes203, 208
.....scheduling117
priority levels116
private key47
process
.....how to change the priority of123
......killing118
......monitoring113
process class
......changing123
......displaying120
process scheduler201 to ??
......class policies202
......timeshare parameter table203
processes performed by ASET75
profil command132
ps command113
ps report, fields in114
public key47, 69
publickey54
publickey map47

Q

queue activity, checking withsar148

R

read permission
......for a directory27
......for a file26
real-time class
......changing process priority209
......parameter table213
......process priority level116
......scheduler policy204
remote logins43
remote procedure call163
......displaying data withnfsstat162
response time, of hosts on thenetwork157, 158
restricted shell13
retransmission rates163
.rhosts files45
......removing58
rlogin command43
root access
......restricting14
......restricting on shared files49
.....restricting to the console14
.....security51
routing table, displaying withnetstat161
RPC, See remote procedure call
rt_dptbl213
runacct172 to 175
.....billing users177
.....daily reports179
.....discount billing178
.....error messages174
.....files produced by174
.....reports179
.....restarting177
.....troubleshooting175

S

sa1 command133
sa2 command134
sadc command
.....activating154
.....at boot-up134
sar command135
.....list of options136
.....buffer activity report138
.....checking CPU use150
.....disk activities report140
.....file access report137
.....global report153
.....kernel memory report143
.....options listed by function156
.....page-in activity146
.....page-out activity142
.....queue activity148
.....semaphore report145
.....system calls139
.....table status report151
.....terminal activity report153
.....unused memory report149
scheduler
.....parameters tables209
.....setting parameters209
scheduling priority117
secret key69
secure access62
secure NIS+, adding a user60
Secure RPC46
......implementation of69
security
......hotline5
......overview of1
......reporting problems5
......system access8
security levels for AdministrationTool52, 55
semaphore operations145
semsys parameters197
set group ID31
set user ID31
setgid permissions31
setuid permissions31
share commands indfstab file49
sharing file systems49
shell, restricted13
shmsys parameters197
small memory request pool143
snoop command159
software lock146
spray command158
sticky bit32
streams parameters195
superuser, monitoring24
swap
......adding space107
......reporting free disk blocks149
......statistics128
symbolic link permissions26
symbolic mode
......about29
......setting permissions with29, 39
SYS security level52
sysadmin group51 to 57, 66, 67
system calls reported bysar139
system class
......process priority level116
.....scheduler policy204
system files checked by ASET76
system resource management104

T

tacct files, fixing errors in176
tasks performed by ASET84
telnet43
terminal I/O checking withsar153
time stamps used by Secure RPC70
timeshare class
.....changing process priority208
.....parameter table210
.....process priority level117
.....scheduler policy203
timex command105
translation faults reported bysar146
transmitting data, using Secure RPC70
trap/interrupt rates reported byvmstat128
trusted hosts44
trusted users45
ts_dptbl210
ts_kmdpris214
ts_maxupri208
ttyhstmgr security57
tune files
.....example of98
.....modifying87
.....used by ASET83
typographic changesxx

U

ufs filesystem parameters195
umask command33
user accounts
.....automatic expiration20
.....checked by ASET77
.....disabling21
user-mode daemon for kerberos71
/usr/aset/asetenv file84
/usr/lib/rsh file13
/usr/sbin/kerbd daemon71

V

validity fault146
/var/adm/pacct file167
/var/adm/sulog log file24
/var/adm/wtmp file166
verifier71
......for Secure RPC70
vmstat command127

W

window verifier70
write permission
......for a directory27
......for a file26
wtmp files, fixing errors in175