Index | Directory | Calendar | Contact ASU | Campuses: Main West East Extended
  Arizona State University
  Unix Network Users Group

 Search:
  


  
Sun OS

UNUG Home
Up
Ports
Sendmail
tcp_wrapper
PGP
Firewalls
Linux
Sun OS
Web
setuid
tcpdump
CERT/Hacker Reports
Vendor
SSH
Monitor
Kerberos
AFS
Xhosts
r Command
su_users
Installation
Virus, Trojan, Worm, etc.
Filesystem
Passwords
Monitor Logs
Physical Security
User Management

 

Name: Mathew Musgrave

Best Practices Submission: The eeprom password should be set on all Solaris systems. On a system that does not an eeprom password set, a cracker can gain access to the root account and set the eeprom password himself. If he sets the eeprom to full inter-active mode and reboots the system, the unit will not boot without the eeprom password. If this happens, the eeprom chip must be physically replaced. Estimates I have seen place replace times at 2 to 4 weeks. That's 2 to 4 weeks you Solaris machine will be down, if you do not set an eeprom password.

 Copyright © Arizona Board of Regents

Updated: 11/20/00