HP UX Internet Express Software manual Assigning Users to Groups, Selecting User Accounts

Page 41

Figure 6 Selecting User Accounts

To return the criteria in the User Account Selection Criteria frame to their default values, click on Reset. If you do not clear or reset the previous choices, they remain in effect to be used in a subsequent query. You can omit an individual selection criterion from subsequent queries by turning off its associated checkbox.

Assigning Users to Groups

When you create a user account, you can assign the user to from one to four logical categories called groups. You can select from existing groups, which are displayed in a list box. To create a new group, see Section : Creating Groups.

The Administration utility allows you to select from groups with a group identifier (GID) of 15 or greater that are defined on the local system. The utility also creates an IASS_Usr group with a GID of 1000 (or the next available GID above 1000), and assigns all captive users to this group. You can select captive accounts (for modification or deletion) by using the IASS_Usr group as a selection criterion.

Note:

If the group Lkr_Usr_ exists from a previously installed version of Internet Express, then the IASS_Usr group is not created and Lkr_Usr_ is used instead.

There is a limit to the number of users you can assign to a given group and to the length of a group name. See the Tru64 UNIX System Administration manual for more information on these limits.

The forms to create user accounts contain a list box that you can use to select from among the existing groups on your system. To select multiple groups, click on up to four groups in the list box. Optionally, you can also associate a Tru64 UNIX user account with up to four additional secondary groups by selecting more than one group from the list box. (If you select more than four groups, the user is assigned to only the first four groups, starting at the top of the list.)

Overview of User Accounts

41

Image 41
Contents Abstract Internet Express for Tru64 Unix VersionPage Contents User Authentication Mail Delivery Administration Mail Access Administration 132 Network Security Administration 167 Web Services Administration 155XML Component Administration 164 Ldap Directory Server Administration 195 Proxy Services Administration 190Samba File and Print Server Administration 216 OpenSLP Administration 207FTP Server Administration 213 Internet Relay Chat Administration 248 InterNetNews Server Administration 225Bind Domain Name Server Administration 260 PostgreSQL Database and MySQL Administration 249Jabber 265 Twiki 266Document Organization About This DocumentIntended Audience Typographic Conventions CommandComputer output User inputReading Documentation Using the Public Web Server Reading Documentation Using the Administration UtilityRelated Information Reading the DocumentationReading Reference Pages for Internet Express Components Reading Documentation from the Internet Express CD-ROMOn a Tru64 Unix System On a PCReading the Open Source Software Component Documentation Readers Comments# man -M /usr/news/man active.5 Internet electronic mail readerscomment@zk3.dec.comReaders Comments Using the Administration Utility Using the Administration UtilityAdministration Utility Menu Options and Tasks Using the Administration Utility Main MenuNavigating the Administration Utility Registering Your Internet Express InstallationUsing Administration Utility Forms Register OnlineSample Administration Utility Form Internet Express Accounts and Ports Accessing Administration ServersPort Number Description 8081 Internet ExpressManaging Internet Express in a TruCluster Environment Accessing the Internet Express Login AccountAccessing and Managing the Internet Monitor TruCluster Impact on Internet Express Administration Installing and Removing ComponentsUsing Internet Express Services in a Cluster Keywords for URL Line Installing and Removing ComponentsHostname of the local host Port number from the current Web serverPerforming Web-Based System Management Accessing Web-Based System Management ToolsAccessing Web-Based System Management Tools Tuning Kernel Attribute ValuesUsing the Administration Utility Open Source Software Web Sites Where to Find More InformationInternet Express and AlphaServer Products Web Sites Firefox ExpectFreeRADIUS GnuPGJabber IRC ServerLynx Web Browser Majordomo Automated Internet Mailing Lists ManagerOpenLDAP MySQLOpenSLP PerlProcmail Mail Filtering Language PostgreSQL Relational Database Management SystemPure-FTP Server Samba File and Print ServerSystem Security Web Sites Applications Other Useful Web SitesInterNIC MicrosoftEncompass Manage Users Menu User AdministrationOverview of User Accounts User AdministrationPurging Obsolete Passwords Assigning Passwords to User AccountsSpecifying User Names Overview of User AccountsSearching for User Accounts Searching for User AccountsSelecting User Accounts Assigning Users to GroupsShows the Create Named User Account form Creating Captive Accounts for Named UsersCreating a Named User Account Creating Captive Accounts for Generic UsersCreating Generic User Accounts Creating a Noncaptive Account for a Unix System UserCreating a Noncaptive Account for a Unix System User To create a group, see Section Creating GroupsCreating a System User Account Creating GroupsCreating Groups Displaying User Account InformationDisplaying User Account Information Deleting User AccountsChanging Groups for User Accounts Changing Groups for User AccountsUser Administration Changing the Password for an Account Changing the Password for an AccountChanging Mail Services for Users Changing Mail Services for Users Assigning Regular Delivery Mail ServiceAssigning POP with Password Mail Service Assigning Cyrus Imap with Password Mail Service Assigning the Cyrus Imap Mail ServiceManaging the iass Account Assigning Apop with Password Mail ServiceChanging the iass Account Forwarding Address Managing the .users.list FileListing User Accounts and Passwords Managing the User Self-Administration FeaturePurging Passwords for User Accounts Removing the .users.list FileManaging the User Self-Administration Feature Enabling and Disabling the User Self-Administration FeatureManage User Self-Administration Menu Configure Web Server for Self-Administration Form Modifying the Web Server ConfigurationModify Web Server Configuration Enabling and Disabling Login DelaysAdding Groups Managing User Self-Administration GroupsAdding Groups Deleting and Modifying GroupsEnabling and Disabling Groups Customizing the User Self-Administration FeatureUser Administration Managing the Ldap Module for System Authentication User AuthenticationManaging the Ldap Module for System Authentication User Authentication Example 1 Security Matrix Enabled for LdapLdap Caching Daemon Example 2 Ldap Caching Daemon Configuration File Value of searchbase Value of machinedn Value of machinepass Creating BranchesUserbranch ou=accounts,searchbase Extended Ldap Schema for Unix Account InformationIndexing Attributes for the Directory Servers Ldap Database Index Types Configuring the Ldap Module for System AuthenticationAdding Indices for OpenLDAP Defining Ldap System Parameters Modifying the Ldap Module ConfigurationConfiguring the Ldap Module for System Authentication Configuring Ldap Password Attributes Configuring Ldap Group Attributes Enabling and Disabling the Ldap Module Testing the Ldap Module ConfigurationImporting and Exporting Users from /etc/passwd Importing Users from NIS Importing Users into the Directory ServerExporting Users from the Directory Server Adding an Ldap User in a C2 EnvironmentAccess Control Ldap Database Utilities Remove login names from all groups Remove login names from specified groupFile in which to store search results the default is Authentication mechanismAdding a User Entry Checking the Ldap Server ConfigurationExtracting Users from the /etc/passwd File Retrieving a User Entry Deleting a User EntryLdapsyncuser -b branch filename Synchronizing with a Password FileAdding a Group Entry Deleting a Group Entry Maintaining Group MembershipRetrieving a Group Entry Setting a Users Password in the Ldap Directory ServerStarting the ldapcd Daemon Ldapgetgroup -b branch -f input-fileStopping the ldapcd Daemon Maintaining the Ldap Directory Server Using Ldap CommandsAdding Entries to an Ldap Database Modifying Entries in an Ldap DatabaseFiles Modified by theLDAP Module for System Authentication Authentication Actions PerformedOverview of the Ldap Client Actions Performed by the Ldap ClientBehavior of the the ldapdc Daemon Operation of login/suDebugging ldapdc Etc/ldapusers.allow# su user1 Sendmail Server Administration Mail Delivery AdministrationMail Delivery Administration Bogofilter to filter spam Section Bogofilter Spam FilterConfiguring the System as a Mail Client Configuring the System as a Standalone Mail SystemConfiguring the System as a Mail Server Ldap see Section Configuring LdapCreating and Deleting Host Aliases for a Mail Server Sendmail Server Administration Changing the Sendmail Server ConfigurationPSInet see Section Configuring the X.25 Protocol Configuring Mail ProtocolsThrough Section Configuring the X.25 Protocol Creating and Deleting Pseudo Domain AliasesConfiguring the DECnet Phase IV Protocol Configuring the MTS ProtocolConfiguring the DECnet/OSI Protocol Configuring the X.25 Protocol Configuring the Uucp ProtocolAccessing the Configure Masquerading Form Configuring MasqueradingRoot Postmaster News Uucp Mailer-daemon Rdist Nobody Daemon Pop Imap Configuring Your System for MasqueradingExample 4 Sample Virtual Domain Table Configuring Virtual Domains# makemap btree virtusertable virtusertable Enabling Anti-Virus Enabling Procmail as a Local MailerConfiguring Relaying Configuring Anti-SpamExample 5 Sample Access Database for the Sendmail Server Configuring the Access DatabaseConfiguring an Access Database Configuring Checking on Senders Information Configuring LdapShows the Configure Ldap form Configuring Mail Filters MilterSocket inet1099@remotehost.com Socket local/var/run/f1.sockSocket inet61066@myhost.com Socket inet1066@myhost.com,T=C5mS10sR10sE5mSample -p local/var/run/example1.sock Adding a Queue Configuring QueuesDeleting a Queue Group # sendmail -bt -q queue-nameModifying a Queue Group General Queue Properties Configuring Queue PerformanceQueue Timers Sendmail Tunable Parameters Configuring Trusted Layer SecuritySendmail Timers Certificate Issuer One that issues certificates a CA Certificate DefaultsTLS Certificate Values Certicate Authority Abbreviation Certificate AuthorityEnabling Support Using the Access Database Marked as permanent VERIFYbits CIname Sendmail Server AdministrationFailure marked as temporary SideRelay or Subject Configuring Mailbox AccessControlling the Sendmail Server Majordomo Mailing List Administration Majordomo Mailing List AdministrationViewing the Sendmail Server Log Creating a Majordomo Mailing ListChanging List Owner or Charter Changing a Majordomo Mailing List ConfigurationChanging Subscription Parameters Changing Administration ParametersChanging Message Content Parameters Changing Digest Parameters Changing Command Access ParametersChanging List Restriction Parameters Changing Moderated List ParametersDeleting a Majordomo List MailmanChanging Address Processing Parameters MailmanCreate a Mailing List Creating the Initial Mailman List Using a ScriptDeleting a Mailing List Managing MailmanMailman Mailing List Administration Menu Mailman Scripts Bogofilter Spam FilterMailman Log Files Training BogofilterFiltering with Bogofilter Using Bogofilter with procmailFilter Integration with Other Tools Bogofilter/wordlist.dbMail Transport Agent MTA Integration with Bogofilter Mutt Integration with BogofilterPine Integration with Bogofilter Bogofilter Spam Filter POP Mail Server Administration Mail Access AdministrationControlling the POP3 Server Controlling the POP2 ServerViewing the POP Mail Server Log Imap Mail Server AdministrationImap Mail Server Administration Converting Imap Mail Folders Setting Up a Unix User Account for UW ImapSetting Up a Unix User Account for Cyrus Imap Controlling the UW Imap Server Controlling the Cyrus Imap ServerUsr/dt/bin/mailcv -evdt -I -f foldername directoryname user Usr/dt/bin/mailcv -I -t -f ./bar dukeViewing the Imap Server Log Configuring SSL for UW-IMAPIMP Webmail Administration IMP Webmail AdministrationEnabling and Disabling IMP Webmail Accessing the IMP Webmail Administration MenuEnable/Disable IMP Webmail Managing Mail Server SettingsAdding a Mail Server IMP Mail Server SettingsModifying the Mail Server List IMP Mail Server List Settings Deleting a Mail Server Managing Mailbox SettingsModifying a Mail Server IMP Mailbox Settings Managing Compose SettingsPreference settings Managing Message SettingsIMP Compose Settings IMP Message Settings Managing Logging SettingsIMP Logging Settings Preference Driver Settings Managing Preference Driver SettingsManaging Horde Settings Managing Miscellaneous IMP SettingsMiscellaneous IMP Settings Setting Description Allow usage of foldersHorde Settings Managing Turba Settings IMP Turba Settings Using IMP Upgrade ToolsSetting Description Enabled Have access to their addressbookUpgrading IMP Databases Upgrading IMP ConfigurationsIMP Database Upgrade Settings New Preference Table Accessing IMP WebmailAdditional Webmail Documentation Secure Web Server Administration Web Services AdministrationSecure Web Server Administration Internet Express Ports and URLs Accessing the Secure Web ServersConfiguration Files for Secure Web Servers Changing Configuration ParametersWeb Server Management ServerHttpd.conf Srm.conf Access.conf Changing the Password for the Administration Web ServerCreating the Search Index Ht//Dig Search Tool AdministrationHt//Dig Search Tool Administration Ht//Dig Indexing and Search Administration Link to Ht//Dig Search Index Updated Ht//Dig Configuration File Message Http//hostname/htdig/search.html Searching the IndexDocumentation Directories and Subsets for XML Components XML Component AdministrationDirectories and Subsets for XML Components Apache Cocoon Servlet Administration Apache Axis Server AdministrationApache Axis Server Administration Managing the Apache Axis ServerViewing the Cocoon Log Files Managing the Apache Cocoon ServletEnabling and Disabling the Cocoon Servlet TCP Wrapper Administration Network Security AdministrationNetwork Services Wrapped by Internet Express Network Services Wrapped by Internet ExpressModifying Access to a Wrapped Network Service Controlling Access to Other Network ServicesNetwork Service Access Options Testing TCP Security ModificationsFireScreen Administration Menu FireScreen AdministrationFireScreen Administration Installing FireScreenEtc/rc.config file Checking FireScreen Installation PrerequisitesFireScreen Administration Install FireScreen Page with Gateway Screening Enabled Configuring FireScreen Configure FireScreen Menu Setting Command-Line OptionsSet Options Confirmation Adding a Screening Rule Setting the Screening ModeAdd New Screening Rule Form Deleting a Screening Rule Checking Syntax of Screening RulesStarting FireScreen Starting and Stopping FireScreenStopping FireScreen Start/Stop FireScreen Form with Restart Option EnabledViewing the FireScreen Log Viewing FireScreen StatusViewing FireScreen Screening Rules Usr/internet/docs/snort Snort documentation Snort Intrusion Detection SystemViewing FireScreen Statistics Configuring Snort Preprocessor Configuring Snort DecoderOption Disable Decode Alert Snort -vd -l ./logViewing Alert Messages FreeRADIUS Server AdministrationRunning Snort Understanding FreeRADIUS Configuration Files Considerations While Installing FreeRADIUSStarting and Stopping the FreeRADIUS Server Users FileRadiusd.conf file Configure --disable-shared make make installClients.conf file Viewing FreeRADIUS Log File Dante Socks Server Administration Proxy Services AdministrationProxy Services Administration Controlling the Dante Socks ServerConfiguring the Dante Socks Server Squid Proxy/Caching Server AdministrationAccessing Dante Socks Information Squid Proxy/Caching Server AdministrationManaging the Squid Proxy/Caching Server Configuring the Squid Proxy/Caching ServerReinitializing the Disk Cache Rotating Log Files Displaying Access StatisticsControlling the Squid Proxy/Caching Server Understanding the Ldap Directory Schema Ldap Directory Server AdministrationUnderstanding the Ldap Directory Schema Example 6 Ldap Standard Object Class Definition for Person Using the Ldap BrowserLdap Directory Server Administration Connecting to an Ldap Server Installing and Running the Ldap BrowserManaging Frequently Used Connections Creating or Editing Frequently Used ConnectionsConnecting to an Ldap Server using SSL Reconnecting to an Ldap Server Using the Main Browsing WindowDisconnecting from an Ldap Server Opening a New Main Window Controlling Client-Side Schema CheckingClosing a Main Window Viewing a Directory Entry in a Separate WindowModifying a Directory Entry Adding a New Directory EntryDeleting a Directory Entry Copying a Directory EntryMoving a Directory Entry Renaming a Directory EntryAdding Attributes Modifying AttributesManaging Directory Entry Templates Deleting AttributesCreating Entry Templates Modifying Entry TemplatesSearching the Directory Viewing the Object Class SchemaViewing the Attribute Schema User Configuration File Managing and Using the OpenLDAP Directory ServerConfiguring the OpenLDAP Directory Server Managing the OpenLDAP Directory ServerLdap Directory Server Administration OpenSLP Overview OpenSLP AdministrationConfiguration Files and Examples Configuring Optional Security Configuring OpenSLPUsing the OpenSLP Configuration and Registration Files Configuring OpenSLP Running the ServicesConsiderations for Using SLP APIs Running the Example ConfigurationDocumentation DocumentationOpenSLP Administration Administering Pure-FTP Server FTP Server AdministrationAdministering Pure-FTP Server Creating or Modifying an Anonymous Pure-FTP User AccountFTP Server Administration Enabling or Disabling Anonymous Pure-FTP AccessEnabling or Disabling chroot Upload /data/ftp /pub yes ftp daemonEnabling or Disabling Pure-FTP server Displaying Active Pure-FTP UsersOptions for Modifying the smb.conf Configuration File Samba File and Print Server AdministrationUnderstanding the smb.conf Configuration File Samba File and Print Server AdministrationWorkgroup Understanding the smb.conf Configuration FileAdd the following value Administering the Samba Server Using the Swat Program Administering the Samba Server Using the Swat ProgramConfiguring the Samba Server Using the Swat Program Samba File and Print Server Administration Configure the Samba Server Menu Manage passwords see Section Administering Passwords Configuring Global VariablesConfiguring Share Parameters Administering Passwords Viewing the Current ConfigurationControlling Printers Viewing the Status of the ServerSamba File and Print Server Administration 225 InterNetNews Server AdministrationINN Daemons Specifying INN Configuration DataInterNetNews Server Administration Configuring an External Newsfeed Configuring an External NewsfeedRecommended Spool Space for News Articles Displaying an External NewsfeedArticle Retention Period Days 12 GBAdding an External Newsfeed Typically, a newsfeed has the following flags set Removing an External Newsfeed Modifying Newsfeed DefaultsModifying an External Newsfeed Updating the Local Active File Managing Client AccessAccess Groups Form Fields Displaying Client Access GroupsAdding a Client Access Group Removing a Client Access Group Modifying an Existing Client Access GroupManaging Client Authentication Groups Displaying Client Authentication GroupsAdding Client Authentication Groups Client Authentication Groups Menu FieldsUsr/bin/news/auth/passwd Modifying Client Authentication GroupsConfiguring Storage Method Entries Configuring Storage OptionsDeleting Client Authentication Groups Configuring Storage OptionsModifying a Storage Method Class Options on the Configure Storage MenuAdding a New Storage Method Class Deleting a Storage Method Class Configuring the Cnfs Storage MethodDisplaying Cnfs Entries Adding New Cnfs EntriesModifying Cnfs Entries Displaying Article Expiration Definitions Managing Article ExpirationDeleting Cnfs Entries Managing Article ExpirationSpecific newsgroup for example, rec.photo Adding an Article Expiration DefinitionManaging Article Expiration Specifying an Article Expiration Definition Modifying an Article Expiration DefinitionDeleting an Article Expiration Definition Managing Local NewsgroupsModifying the Retention Period for Expired Articles Managing Local NewsgroupsDeleting Local Newsgroups Viewing INN Log FilesCreating Local Newsgroups Controlling the INN Server Controlling the INN ServerConfiguring IRC Internet Relay Chat AdministrationInternet Relay Chat Administration Controlling the IRC ServerInstalling PostgreSQL PostgreSQL Database and MySQL AdministrationInstalling PostgreSQL Starting and Stopping PostgreSQL ServerViewing the PostgreSQL Log File PostgreSQL Database and MySQL AdministrationImportant Files and Directories Administering PostgreSQL AccountsAdministering PostgreSQL Accounts Using Existing PostgreSQL Accounts Setting up a Crontab Entry for Vacuuming DatabasesRunning the Postmaster Startup Script PostgreSQL Files and DirectoriesSetting up a Crontab Entry for Vacuuming Databases PostgreSQL Database and MySQL Administration Setup Vacuum Crontab Form #/sbin/init.d/postgres start Scaling PostgreSQL#/sbin/init.d/postgres stop Scaling PostgreSQL #/sbin/sysconfig -q ipc#ps -ef grep postmaster Directories and Files Established by MySQL Installation Administering MySQLStarting and Stopping MySQL MySQL DirectoriesMySQL Configuration Files Starting and Stopping the MySQL Server Using a Command LineViewing the MySQL Error Log MySQL Log FilesBind Overview Bind Domain Name Server AdministrationImportant Bind Files and Directories Bind Files and DirectoriesBind Binary File Directories Enabling Bind Bind Documentation Running the Bind Startup ScriptEnter /sbin/init.d/named start Enter /sbin/rcinet start Running the Bind Startup ScriptHttp//ops.ietf.org/dns/dynupd/secure-ddns-howto.html Controlling the Jabber Server JabberControlling the Jabber Server Twiki TwikiStarting TWiki Stunnel Sample client server configurationSample client server configuration Creating a Certificate of Authority Sendmail Supplemental InformationBackground OpenSSL Certificate Creation Sample mail filter Section Mail Filter ExampleMail Filter Example Mail Filter ExampleSendmail Supplemental Information Smfiversion Glossary Glossary273 FTPSee also Https 275 See TCP/IPIndex SymbolsIndex 277 Decus see Encompass deinstall.sh scriptWeb site, 30 external newsfeed adding Index 279 Ldap client, 87 Ldap commandsLog file FireScreen viewing, 183 login account Index 281 OpenLDAP Project Web sitePoppassd server controlling Screening mode, 178 screening rule FireScreen 283 TIN
Related manuals
Manual 34 pages 37.15 Kb