Saturday, April 9, 2011

Basic Solaris User:::Automatically assigned


Basic Solaris User:::Automatically assigned 

rights:auths=solaris.profmgr.read,solaris.jobs.users,solaris.mail.mailq,solaris.a
dmin.usermgr.read,solaris.admin.logsvc.read,solaris.admin.fsmgr.read,solaris.admin.serialmgr.read,solaris.admin.diskmgr.read,
solaris.admin.procmgr.user,solaris.compsys.read,solaris.admin.printer.read,solaris.admin.prodreg.read,solaris.admin.dcmgr.rea
d,solaris.snmp.read,solaris.project.read,solaris.admin.patchmgr.read,,solaris.network.hosts.read,solaris.admin.volmgr.read;pr
ofiles=All;help=RtDefault.html




solaris.admin.usermgr.:::User Accounts::help=AuthUsermgrHeader.html
solaris.admin.usermgr.write:::Manage Users::help=AuthUsermgrWrite.html
solaris.admin.usermgr.read:::View Users and Roles::help=AuthUsermgrRead.html
solaris.admin.usermgr.pswd:::Change Password::help=AuthUserMgrPswd.html



Service Management:::Manage services:auths=solaris.smf.manage,solaris.smf.modify


User Management:::Manage users, groups, home directory:auths=solaris.profmgr.read,solaris.admin.usermgr.write,solaris.admin.u
sermgr.read;help=RtUserMngmnt.html






***************************************************************************************************************************
Creation of role
---------------------
roleadd -P "User Management" -d /export/home/userm -m userm

Verify the Roles
-------------------

getent passwd userm

# roles sunil
root,userm



# auths userm
solaris.profmgr.read,solaris.admin.usermgr.write,solaris.admin.usermgr.read,solaris.device.cdrw,solaris.jobs.users,solaris.mail.mailq,solaris.admin.logsvc.read,solaris.admin.fsmgr.read,solaris.admin.serialmgr.read,solaris.admin.diskmgr.read,solaris.admin.procmgr.user,solaris.compsys.read,solaris.admin.printer.read,solaris.admin.prodreg.read,solaris.admin.dcmgr.read,solaris.snmp.read,solaris.project.read,solaris.admin.patchmgr.read,solaris.network.hosts.read,solaris.admin.volmgr.read

 rolemod -P "User Management,User Security" userm

roleadd -P "User Security" -d /export/home/userm -m userm1

***************************************************************************************************************************


Cron Management

roleadd -P "Cron Management,Basic Solaris User" -d /staff/cronm -m cronm
rolemod -P "Cron Management,Basic Solaris User" cronm




roleadd -P "Cron Management,Basic Solaris User" -d /finusers/cronm -m cronm