Xerox Phaser 6100DN Podręcznik bezpieczeństwa - Strona 9

Przeglądaj online lub pobierz pdf Podręcznik bezpieczeństwa dla Serwer druku Xerox Phaser 6100DN. Xerox Phaser 6100DN 38 stron. Disk overwrite installation and usage
Również dla Xerox Phaser 6100DN: Instrukcja instalacji (34 strony), Specyfikacje (2 strony), Podręcznik użytkownika (32 strony), Broszura i specyfikacje (4 strony), Podręcznik użytkownika (28 strony), Instrukcja instalacji (2 strony), Instrukcja instalacji (2 strony), Uwaga dotycząca wydania (2 strony), Podręcznik dla początkujących (37 strony), Podręcznik (34 strony), Podręcznik (34 strony), Podręcznik dla początkujących (34 strony), Podręcznik użytkownika (32 strony), Instrukcja instalacji i obsługi (8 strony)

Xerox Phaser 6100DN Podręcznik bezpieczeństwa

Enable and disable services

System Service
Allow_host.equiv_plus
Anonymous FTP
BSM
Executable Stacks
Hide Info Banners
Multicast Routing
Remote CDE Logins
Restrict DFS tab
Restrict NFS Portmon
Router
Secure File
Permissions
Security Guide
The following tables provide a list of the services that can be
enabled and disabled from the Xerox FreeFlow Print Server
"Setup > Security Profiles" menu options.
NOTE: Services list may vary, depending on the product.
Table 2-2
"System" tab
Background: The /etc/hosts.equiv and /.rhosts files provide the remote
authentication database for rlogin, rsh, rcp, and rexec. The files
specify remote hosts and users that are considered to be trusted.
Trusted users are allowed to access the local system without
supplying a password. These files can be removed or modified to
enhance security. The Xerox FreeFlow Print Server is provided with
both of these files deleted entirely. The setting All_host.equiv_plus is
set to disabled, then anytime that security settings are applied, the +
will be removed from host.equiv. IMPORTANT NOTE: Removing the +
from the hosts.equiv file will prevent the use of the Xerox command
line client print from remote clients. An alternative would be to remove
the + and add the name of each trusted host that requires this
functionality. Leaving the + will allow a user from any remote host to
access the system with the same username
Enable or disable the Basic Security Module (BSM) on Solaris
Some security exploits take advantage of the Solaris OE kernel
executable system stack to attack the system. Some of these exploits
can be avoided by making the system stack non-executable. The
following lines are added to /etc/system/fP file:set
noexec_user_stack=1set noexec_user_stack_log=1
Deny all remote access (direct/broadcast) to the X server running on
the Xerox FreeFlow Print Server by installing an appropriate /etc/dt/
config/Xaccess file.
Disable router mode by creating an empty the empty file: /etc/
notrouter.
Description
5