2008년 11월 18일
AIX /etc/pam.conf
On AIX 5.2
Make PAM Framework configuration
Make PAM Framework configuration
touch /etc/pam.conf
chmod 644 /etc/pam.conf
chown root:security /etc/pam.conf
Setup pam.conf
#
# Authentication
#
ftp auth required /usr/lib/security/pam_aix
imap auth required /usr/lib/security/pam_aix
login auth required /usr/lib/security/pam_aix
rexec auth required /usr/lib/security/pam_aix
rlogin auth required /usr/lib/security/pam_aix
snapp auth required /usr/lib/security/pam_aix
su auth required /usr/lib/security/pam_aix
telnet auth required /usr/lib/security/pam_aix
OTHER auth required /usr/lib/security/pam_aix
#
# Account Management
#
ftp account required /usr/lib/security/pam_aix
login account required /usr/lib/security/pam_aix
rexec account required /usr/lib/security/pam_aix
rlogin account required /usr/lib/security/pam_aix
rsh account required /usr/lib/security/pam_aix
su account required /usr/lib/security/pam_aix
telnet account required /usr/lib/security/pam_aix
OTHER account required /usr/lib/security/pam_aix
#
# Password Management
#
login password required /usr/lib/security/pam_aix
passwd password required libpamtivoli.so use_first_pass
/opt/ibm/DiPlugins/PAM/pampwsync.props
rlogin password required /usr/lib/security/pam_aix
su password required /usr/lib/security/pam_aix
telnet password required /usr/lib/security/pam_aix
OTHER password required /usr/lib/security/pam_aix
#
# Session Management
#
ftp session required /usr/lib/security/pam_aix
imap session required /usr/lib/security/pam_aix
login session required /usr/lib/security/pam_aix
rexec session required /usr/lib/security/pam_aix
rlogin session required /usr/lib/security/pam_aix
rsh session required /usr/lib/security/pam_aix
snapp session required /usr/lib/security/pam_aix
su session required /usr/lib/security/pam_aix
telnet session required /usr/lib/security/pam_aix
OTHER session required /usr/lib/security/pam_aix
Enable PAM
edit /usr/lib/security/method.cfg
PAM
program = /usr/lib/security/PAM
program_64 = /usr/lib/security/PAM
options = auth=PAM,db=BUILTIN
*winbind
program = /usr/lib/security/WINBIND
options = authonly
On AIX 5.3(native support PAM)
http://publib.boulder.ibm.com/infocenter/tivihelp/v2r1/index.jsp?topic=/com.ibm.IBMDI.doc_6.1/pluginsguide65.htm
# by | 2008/11/18 19:07 | AIX | 트랙백 | 덧글(0)

