#ports required for
############################################################
pass in log quick proto icmp from any to any
pass in log quick proto tcp from any to any port = 514
pass in log quick proto tcp/udp from any port = 2049 to any keep frags pass in log quick proto tcp/udp from any to any port 49152 >< 65535
c.In the IPFilter Module of Bastille, change the following line to Yes if it is not already.
Should Bastille setup basic firewall rules with these properties?
d.Run Bastille.
#bastille
6.If a Bastille baseline had been created for the system, update that baseline.
# bastille_drift
Configuring Ignite to replace TFTP with NFS
Beginning with
Overview
In order to use this functionality, minor modifications to
•Add a keyword to the appropriate configuration files instructing Ignite to use NFS instead of TFTP.
•Ensure config files are located in an acceptable directory that is
•Disable the TFTP daemon.
NOTE: Because of changes necessary to replace TFTP with NFS, beginning with C.7.9 the locations of three Ignite product files have moved. Ignite automatically creates symbolic links from the old file to the new file location. These files are:
Table 7 Ignite Product Files Moved in Version C.7.9 and Later
C.7.9 and Later Location | |
|
|
/opt/ignite/Version | /opt/ignite/data/Version |
/var/opt/ignite/INDEX | /var/opt/ignite/data/INDEX |
/var/opt/ignite/config.local | /var/opt/ignite/data/config.local |
|
|
|
|
Procedure
1.Add the _hp_loadfile_use_nfs keyword.
HP recommends placing this in the config section of the install file system. Use your environment’s
First, change the working directory to the
#cd /opt/ignite/boot/Rel_B.11.31
#instl_adm
92 Security