etrust Access Control etrust Access Control UNIX(Linux, Windows) 2

Similar documents
AccessflÌfl—−ÇŠš1

untitled

i


Wide Scanner TWAIN Source ユーザーズガイド

RTX830 取扱説明書

unix.dvi

untitled

「産業上利用することができる発明」の審査の運用指針(案)




Logitec NAS シリーズ ソフトウェアマニュアル

untitled

Oracle Calendar Oracle Collaboration Suite 2(9.0.4) Creation Date: Jun 04, 2003 Last Update: Nov 18, 2003 Version:

II II,,,, AII BII CII

178 5 I 1 ( ) ( ) ( ) ( ) (1) ( 2 )

P X-M04-00 PowerChute Network Shutdown PowerChute Network Shutdown Standard v2.2.3a / Enterprise v2.2.3v PowerChute Network Shutdown Standard

UNIX

生活設計レジメ

44 4 I (1) ( ) (10 15 ) ( 17 ) ( 3 1 ) (2)

I II III 28 29


RouteMagic Controller RMC-MP200 / MP Version

RouteMagic Controller( RMC ) 3.6 RMC RouteMagic RouteMagic Controller RouteMagic Controller MP1200 / MP200 Version 3.6 RouteMagic Controller Version 3

FileMaker Server 8 Administrator’s Guide

1-index.PDF

IP IP DHCP..

VNX for Fileでの監査ツールの構成および使用

WebOS aplat WebOS WebOS 3 XML Yahoo!Pipes Popfry UNIX grep awk XML GUI WebOS GUI GUI 4 CUI

平成16年度 教育研究員研究報告書 高等学校 地理歴史・公民

owners.book

Logitec NAS シリーズ ソフトウェアマニュアル

ii

(O) (N) (V) (N) kuins-pptp (N) 2

GA-1190J

スライドタイトル/TakaoPGothic

11 Windows XP IP WEP (Web )

内閣官房情報セキュリティセンター(NISC)

<Documents Title Here>

28 Docker Design and Implementation of Program Evaluation System Using Docker Virtualized Environment

Logitec NAS シリーズ ソフトウェアマニュアル

RouteMagic Controller RMC-MP200 / MP Version

untitled

i

ネットワークユーティリティ説明書

_‚Ofl¼

2

McAfee Application Control ご紹介

2

untitled

untitled

2006/6/ /9/1 2007/11/9 () 2011/4/ ( ()) ii

Systemwalker IT Service Management Systemwalker IT Service Management V11.0L10 IT Service Management - Centric Manager Windows


TCP/IP Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.3 Internet Week 2002 [2002/12/17] Japan Registry Service Co., Ltd. No.4 2

活用ガイド (ソフトウェア編)

HP Server tc2120 Microsoft Windows 2000 Server SP3 HP P

Docodemo-Net (Q&A ) Web Web ( 1.1 WPA2 (WEP ) LAN WEP WPA2 WPA2 Docodemo-Net WEP 2 Docodemo-Net lab


1

JAPN 395 Course Reader


取扱説明書の読み替え一覧表

86 7 I ( 13 ) II ( )

アライドテレシス ディストリビューション・スイッチ AT-x600シリーズで実現するMicrosoft® NAP

AirMac ネットワーク for Windows

untitled

Si-R180 ご利用にあたって

スライド 1

.A.N.Z.X36..PDF

入門ガイド

Jp

untitled

00.目次_ope

総セク報告書(印刷発出版_.PDF

教室案内.pptx

<4D F736F F F696E74202D C835B B E B8CDD8AB B83685D>

NetSkate

untitled

SC-85X2取説


2 1: OSI OSI,,,,,,,,, 4 TCP/IP TCP/IP, TCP, IP 2,, IP, IP. IP, ICMP, TCP, UDP, TELNET, FTP, HTTP TCP IP

GA-1200J

活用ガイド (ソフトウェア編)

Oracle Application Server 10g( )インストール手順書

IP L09( Tue) : Time-stamp: Tue 14:52 JST hig TCP/IP. IP,,,. ( ) L09 IP (2017) 1 / 28

"CAS を利用した Single Sign On 環境の構築"

NEC Storage series NAS Device

LPM-CBUSB2

untitled

Moldplus_Server_4.12

"CAS を利用した Single Sign On 環境の構築"

untitled

実施していただく前に

tebiki00.dvi

Microsoft Windows, Windows CE, Microsoft Corporation Citrix ICA Citrix Presentation Server Citrix Systems, Inc IBM IBM Corporation

untitled

Microsoft Word - D JP.docx

untitled

Transcription:

etrust Access Control etrust Access Control UNIX(Linux, Windows) 2

etrust Access Control etrust Access Control 3 ID 10 ID SU ID root 4

OS OS 2 aaa 3 5 TCP/IP outgoing incoming DMZ 6

OS setuid/setgid) OS 7 Read, Write, Execute, Delete, Update, Chown, Chmod, Chdir, ALL, Note UFS, HPFS, CDFS, FAT, NTFS Kill OS etrust Access Control 8

9 DB 10 etrust Access Control etrust Access Control

11 etrust Access Control etrust Access Control OS 12 etrust Access Control User1 more /secret? SYSCALL TABLE Access Control Access Control secret secret ACDB read Etc. Etc. open exec setuid

etrust Access Control etrust Access Control root administrator root root Shut Down UNIXOS 14

IV. I. II. III. etrust Access Control. Log etc 16

17. All Deny All Deny 18. Unix

. HTTP Port aaaa Login Telnet,rlogin Login Unix 19. su Unix OS root 20

21. Unix 22. etrust Access ControlUnix Unix OS etrust Access Control

etrust Access Control WH What Who When Where How 23 Information Title Access Administrator Class Command Command Type Daemon Date Details Effective user ID Event type File Host name Login user ID Object Program Real user ID Resource Service Status Terminal Time Trace Information User name 24 etrust Access Control UID ID ( ) UNIX UID UIDeAC Logout

1. hanako 2. taro 3. su root 4. </JINJI> 5. </KEIRI> UNIX 1. hanako HP-UX 2. taro 3. su root 4. 5. etrust Access Control 1. hanako 2. taro 3. su taro 4W1H 4. taro </JINJI> 5. taro </KEIRI> 25 26 08 Jul 2002 10:57 D LOGIN root 59 10 TKY001 sedlang 08 Jul 2002 10:58 P LOGIN tanaka 59 2 100.35.110.100 /usr/bin/login 08 Jul 2002 11:37 D FILE tanaka Read 69 2 /test1/test1.txt /bin/ vi 08 Jul 2002 11:37 D FILE tanaka Read 69 2 /test1/test1.txt /bin/cat 08 Jul 2002 11:11 D SURROGATE tanaka Read 69 2 USER.root /bin/su 100.35.110.100 08 Jul 2002 16:14 P LOGIN yamada 59 2 100.50.101.20 /bin/login 08 Jul 2002 16:15 P TRACE 210 210 210 0 EXECARGS: 'cp /etc/passwd *' 08 Jul 2002 16:15 D FILE yamada Read 55 2 /etc/inetd.conf /bin/cat 100.50.101.20 08 Jul 2002 16:16 O LOGOUT yamada 49 2 100.50.101.20 TKY001 root 100.35.110.100 tanaka tanaka /test1/test1.txt vi tanaka /test1/test1.txt cat tanaka 100.35.110.100 su 100.50.101.20 yamada UID 210 /etc/passwd 100.50.101.20 yamada /etc/inetd.conf 100.50.101.20 yamada

27 OS Linux UNIX PMDB COPY COPY COPY PMDB PMDB PMDB PMDB PMDB PMDB PMDB PMDB PMDB PMDB PMDB 28 Linux SNMP unix

etrust Access Control 29 30

Web OS:Redhut7.0 Hostname: etrustxxx IP address xxx.xxx.xxx.xxx etrust Access Control SW Web OS:Redhut7.0 Hostname:etrust015 IP address:1 xxx.xxx.xxx.xxx etrust Access Control 31 DMZ OS:Windows2000Server Hostname:iinhi02 IP address:yyy.yyy.yyy.yyy Web 32 Root Root Root

Web Web Web 33 Web iinuma 34

Web OS root OS root 35 Web 36

Web OS root Web 37 Web 38

etrust Access Control Web Web 39 etrust Access Control etrust Access Control HTML OS root Web Web 40

etrust Access Control iinuma 41 etrust Access Control OS root etrust Access Control iinuma 42

etrust Access Control etrust Access Control iinuma User :iinuma /bin/su Root 43 etrust Access Control etrust Access Control root OS root 44

etrust Access Control OS root etrust Access Control OS Web 45 etrust Access Control etrust Access Control Web root User :root HTML 46

etrust Access Control OS root Web etrust Access Control OS Web 47 etrust Access Control etrust Access Control Web Web root Web User :root Web 48

49 etrust Access Control Web Web 50 Web Root Root Root Host Host su OK su OK

51 etrust Access Control Unix OS etrust Access Control 52 Web Root Root Root root root

53 etrust Access Control Unix OS etrust Access Control 54 Web Root Root Root Host Host su OK su OK root root

55 Unix OS etrust Access Control 56

etrust Access Control etrust Access Control 58

etrust Access Control root administrator 59 etrust Access Control OracleDB2 60

etrust Access Control su root ID 61 IDS etrust Access Control 62

etrust Access Control OS 63 etrust Access Control UNIX LINUX 64

etrust Access Control OS 65 etrust Access Control 66