Enhanced security files migration from one system to another

From: John Galt (jgalt163_at_comcast.net)
Date: 03/29/04

  • Next message: McCracken, Denise: "SUMMARY: 5.1a support for Radeon 7500 card"
    Date: Mon, 29 Mar 2004 10:08:00 -0500
    To: tru64-unix-managers@ornl.gov
    
    

    Hello All,

    I am having trouble migrating the TCB databases from one T64 v51.a system
    to another system with the same version. The main difference between the
    systems is that the system I am copying the files from is at patch kit 2
    and the target system is at patch kit 5.

    I have copied over the following files:
    /tcb/files/auth.db
    /var/tcb/files/auth.db
    /etc/auth/system/default
    /etc/passwd
    /etc/group

    I have removed the /etc/passwd.pag and /etc/passwd.dir files and used vipw
    after copying the passwd file to recreate the hashed database.

    I've verified that the ownership and permissions of all the copied files
    matches the originals ( as well as matching the permissions on the source
    system).

    At this point, I can log in as root so I assume that the /tcb/files/auth.db
    is functioning properly.

    However, when I log in through telnet as a regular user, I get a message like:
    "Can't rewrite protected password entry for user jsmith"

    If I try to change a users password, I get a similar message:
    "Password not changed: failed to write protected password entry"

    I've done this before by simply copying the auth.db files, default, passwd,
    and group files and it all worked properly.

    What am I missing?

    Thanks in advance.
    John


  • Next message: McCracken, Denise: "SUMMARY: 5.1a support for Radeon 7500 card"