Index

access control
Understanding System Access Control

Access Control Lists
Access Control Lists

accountability
Reasons to Use The Commercial Security Pak

ACL
Access Control Lists

assurance
Reasons to Use The Commercial Security Pak

audit trail
System Audit Trail
System Audit Trail

capabilities
Capabilities

chacl
Setting Directory Default ACLs With chacl

changing permissions
Changing Permissions

conventions, typographical
Conventions Used in This Guide

CSP-Kerberos
Using CSP-Kerberos

CSP-Kerberos access, allowing
Granting Access to Your Account

CSP-Kerberos FTP
FTP

CSP-Kerberos ksu
ksu

CSP-Kerberos password, changing
Changing Your CSP-Kerberos Password

CSP-Kerberos passwords
CSP-Kerberos Password Management

CSP-Kerberos principal
CSP-Kerberos Principals

CSP-Kerberos realm
CSP-Kerberos Principals

CSP-Kerberos rlogin
rlogin

CSP-Kerberos rsh
rsh

CSP-Kerberos telnet
telnet

CSP-Kerberos ticket
CSP-Kerberos Tickets

DAC
Discretionary Access Control
Discretionary Access Control
changing permissions
Changing Permissions
directory permissions
Directory Permissions
Discretionary Access Control
Discretionary Access Control
file permissions
File Permissions
permissions
Discretionary Access Control
umask
Setting Permissions With umask
using
Using DAC

definition of a trusted system
Definition of a Trusted System

directory permissions
Directory Permissions

Discretionary Access Control (see DAC)
Discretionary Access Control

documentation conventions
Conventions Used in This Guide

file permissions
File Permissions

FTP
FTP

help
reference
Reference Pages

IRIX permissions (DAC)
Discretionary Access Control

k5login
Granting Access to Your Account

kdestroy
Destroying Your Tickets With kdestroy

Kerberos
Using CSP-Kerberos

Key Distribution Center
Introduction to CSP-Kerberos

kinit
Obtaining Tickets With kinit

klist
Viewing Your Tickets With klist

kpasswd
Changing Your CSP-Kerberos Password

ksu
ksu

least privilege
Capabilities

locked account
Password Aging

login accounts
locked
Password Aging

man command
Reference Pages

man pages
Reference Pages

network security
Using CSP-Kerberos

object reuse
Object Reuse Policy

password
Passwords in the Commercial Security Pak
aging
Password Aging
generation
System-Generated Passwords
Passwords in the Commercial Security Pak
guidelines
Passwords Under the Commercial Security Pak
locked accounts
Password Aging
selection
Passwords Under the Commercial Security Pak

password aging
Password Aging

password generation
System-Generated Passwords

password, changing
Changing Your CSP-Kerberos Password

passwords
CSP-Kerberos Password Management
What You See and What You Don't

permissions
changing
Changing Permissions
directory
Directory Permissions
file
File Permissions
umask
Setting Permissions With umask

permissions (DAC)
Discretionary Access Control

principal
CSP-Kerberos Principals

realm
CSP-Kerberos Principals

rlogin
rlogin

rsh
rsh

SAT
System Audit Trail
system audit trail
System Audit Trail

security
policy
Reasons to Use The Commercial Security Pak

showpwage
Password Aging

System Audit Trail (see SAT)
System Audit Trail

TCB
Commercial Security Pak Features

telnet
telnet

ticket
CSP-Kerberos Tickets
Ticket Management
Introduction to CSP-Kerberos

trust
definition
Definition of a Trusted System

Trusted Computing Base
Commercial Security Pak Features

Trusted System
Definition of a Trusted System

typographical conventions
Conventions Used in This Guide

umask
Setting Permissions With umask