HP manual Sentry User’s Guide

Page 26

Section 1 - 8

SENTRY User’s Guide

This program will generate a printed report, using whatever printer setup is in effect at the time the program is run. To modify the printer, destination or form, use the SETPTR command at the TCL prior to running the program. Alternatively, the SENTRY XEQ function may be used to execute the SETPTR command.

To execute this program, select 1. Database Creation and Validation Menu from the SENTRY Main Menu. Next, select 3. Validate the User Profile Database from the Database Creation and Validation Menu.

Enter “OK” to start the validation or “<ESC>“ to exit: - This is the first of two input prompts in this program. If you enter “OK”, the program will continue. To exit at either prompt press <ESC> then enter <RETURN>.

Do you want to print missing password messages?(Y/N) or <ESC> to exit:

Your answer to this prompt controls whether or not the validation program tells you about users who have no passwords in the SENTRY database. If “Y” is entered the message

FATAL! User “USER.ID” does not have a password in the SENTRY database.

will print on the validation report.

When SENTRY retrieves the data from the passwd file, the password field is loaded into the SENTRY database. SENTRY cannot read the password or decrypt it! Only passwords created from the User Profile data entry screen, which are encrypted by SENTRY can be decrypted by SENTRY. Some system administrators choose to setup and track all user passwords through SENTRY. Others choose to have users manage their own passwords and not to maintain them in SENTRY. If you are not tracking user passwords, the “missing password” messages will be of little use to you.

We suggest that you answer “N”o don’t print these messages unless you have created all passwords through the User Profile data entry screen or through one of SENTRY’s password utilities.

Two types of errors are reported. These are called “FATAL” and “Warning”. “FATAL” errors are those which we believe could possibly create a serious security issue or those which would lead to an operational problem. The following is a list of errors which we have labeled as FATAL.

1.“User XXXXX not on the SENTRY.USERS file.” - The user name “XXXXX” was found in the list of SENTRY users in the SENTRY.CONTROL file, but no record was found for this user in the SENTRY.USERS file. This indicates an inconsistency in the SENTRY database; we suggest that the User Profiles be uploaded from UNIX again (selection 1 in the Database Creation and Validation Menu.)

2.“User XXXXX does not have a password in the SENTRY database.” - The user “XXXXX” has no password in SENTRY. This message will ONLY appear if you answered “Y” to the prompt, “Do you want to print missing password messages?”. If you are tracking passwords within SENTRY, this user should be assigned a password.

Fitzgerald & Long

Image 26
Contents Sentry Page Table Of Contents Page Using this Guide Introduction Sentry User’s Guide Using the Screens Data Entry Conventions Installing Sentry Mv sentry sentry.oldUniData … /udt/bin InstallUniVerse … /uv/bin PI/open … /isys/binMain Menu SentryGetting Started Sentry Sentry is currently being run by user nYou must be a super-user to use Sentry Sentry Main MenuIntroduction Introducing the Main Menu Introduction Page Introducing the Database Creation and Validation Menu Database Creation and Valudation Menu Fitzgerald & Long Upload User and Group Profiles from Unix DB.LOAD SENTRY.DB.LOAD Batch Create Database from File System Phantom SENTRY.FILE.LOAD BatchValidate the User Profile Database ValidationSentry User’s Guide Fitzgerald & Long Sentry User’s Guide Fitzgerald & Long Page Introducing the Database Maintenance Menu Database Maintenance Fitzgerald & Long Passwd File Order Group File Order System Profile MaintenanceMaximum Command Length Maximum Startup Path Length SYSTEM.MAINTFitzgerald & Long Sentry User’s Guide Fitzgerald & Long Custom User Default Maintenance SUN CUSTOM.USEREnter field number, File or ESC to exit UID User MaintenanceUSER.MAINT GIDFitzgerald & Long Sentry User’s Guide SUN Enter field number, File or ESC to exit Are you sure you want to delete the entire recordYES/NO? File Ownership ConflictJaf Enter ESC to quit Fitzgerald & Long Group Maintenance GROUP.MAINTDo you want to update the Unix group file Y/N? File Group Conflict Sentry User’s GuideSection 2 Sentry User’s Guide Sysbckup File SystemFILE.MANAGER CURSOR.MAIN View Group Execute XEQ View User RepaintEnter name for cross reference FILE.MAINT Do you want to update ALL files within this Directory also? Read permission w write permission x execute permissionACL.MAINT ALLFitzgerald & Long Sentry User’s Guide More File Manager Views Enter the user name or UID to view @ for X-refFILE.MANAGER Enter the group name or GID to view @ for X-ref SENTRY.COMMAND.CONTROL Command MaintenanceCOMMAND.MAINT PROC.TEST ProcUse at database prompt only Unlimited use Execute from inside a program onlyBoth use at database prompt and from within a program No useSentry User’s Guide User Item Protection Maintenance USER.ITEM.MAINTSentry User’s GuideSection 2 Sentry User’s Guide Sentry User’s Guide Sentry User’s Guide Introducing the Reports Menu Reports Menu SentryFitzgerald & Long System Profile Report Fitzgerald & Long Sentry User’s Guide Fitzgerald & Long Sentry User’s Guide User Profiles SENTRY.USERS.REPORTSentry User’s Guide Groups Report SENTRY.GROUPS.REPORTSentry User’s Guide Account Protection Report NoneSENTRY.COMMANDS Command Protection Report SENTRY.COMMANDS.REPORTThere are no prompts for this report Access Violations Report SENTRY.VIOLATION.REPORTSentry User’s Guide Introducing the Utilities Menu Utilities Menu DatabaseFitzgerald & Long VOC Protection Setup Account Containing ProtectionPuging the Violations LOG Sentry User’s Guide Password Creation This is the Password Generation data entry screenSentry User’s Guide Fitzgerald & Long Rebuild Cross Reference Files REBUILD.INVERTSUpdate Protected Commands Page DATA.STRING Input Sentry Internal SubroutinesSample Call @SENTRY.ENCRYPTDATA.STRING, RETURN.STRING RETURN.STRING OutputENCRYPTION.KEY Input THE.KEY Fudge Tastes GoodSubroutine SENTRY.USER.ITEM.CONTROL THE.KEY = Fudge Tastes GoodUSER.ITEM Input ACCESS.RIGHTS OutputERROR.TEXT Output ITEM.FOUND OutputAppendix 1 Subroutine SENTRY.VIOLATION.STAMP Comment InputAppendix 1 Page Sentry KEY Bindings Appendix 2 Sentry User’s Guide Appendix 2