Skip to main content.

Ordonnanceurs < Les incontournables < Autosys < Administration

Sécurité

Restreindre la sécurité à certains comptes sur certaines machines

Le principe est de créer une table de permissions et de gérer les permissions dans la procédure stockée.

Supprimer le compte root en global

Supprimer la possibilité d’utiliser un compte root à partir de la base Autosys. A noter que la ligne de DENY_ACCESS dans le fichier /etc/profile marche très bien. # DENY_DENY_ACCESS=root #

Pour une configuration plus poussée, Jonathan McAlroy fournit une gestion des utilisateurs pluspoussée : Restreindre la sécurité à certains comptes sur certaines machines.

Dernières infos

FBI Campaign on Corporate Espionage Highlights Insider Threats

Last week the FBI launched a campaign to educate the public about the threat of corporate espionage. What is new about this initiative is that the FBI is talking directly to the public about espionage and providing a list of suspicious behaviors that employees of U.S. companies should be on the lookout for. The campaign will even extend beyond the Internet to billboards and messages on bus...

 

Identity and Access Management (IAM)
Defend against APT attacks from the inside out

NPR's morning edition had a segment titled "Cybersecurity Firms Ditch Defense, Learn To ‘Hunt." The focus of the piece is on attacks from China that look to gain intellectual property and other trade secrets from specifically-targeted Western firms.  This type of attack is called an Advanced Persistent Threat (APT). There is little doubt that APTs are a growing problem;...

 

CA ControlMinder Meets SAP Requirements

The CA Security team is pleased to announce that SAP has determined that CA ControlMinder meets its requirements for mission-critical customer SAP Linux environments and will fully support its own components in a Linux/CA environment. Further details can be found on the SAP support website (registration required) For further information on how CA solutions can help improve SAP security, please...

 

VMware Source Code Breach Highlights Need for Virtualization Security

VMware confirmed on April 24 that a portion of the source code to their ESX hypervisor was stolen and posted on the Internet. The reported damage so far has been limited - only a single file has been posted from an older version of the software. While it is not expected that the release of even the full source code to VMware ESX would open the flood gates to rampant hypervisor compromises, this...

 

OTTF – Providing a Level of “Surety”

As I wrote last December, I've been working on the Open Trusted Technology Forum (OTTF) with The Open Group.   In March we published a "snapshot" of the Open Trusted Technology Provider Standard (O-TTPS) and it's getting quite a lot of visibility. Just a couple of weeks ago the CTO of The Open Group, Dave Lounsbury, testified before the House Energy and Commerce...