<?xml version="1.0" encoding="utf-8"?><!-- generator="FeedCreator 1.7.2-ppt (info@mypapit.net)" --><feed xmlns="http://www.w3.org/2005/Atom">    <title>Ubuntulandia</title>    <subtitle>Blog dedicado al mundo de Ubuntu distribuciòn Linux Open Source</subtitle>    <link rel="alternate" type="text/html" href="http://ubuntulandia.blogcindario.com/"/>    <id>http://ubuntulandia.blogcindario.com/</id>    <updated>2009-04-11T09:46:53+01:00</updated>    <generator>FeedCreator 1.7.2-ppt (info@mypapit.net)</generator><link rel="self" type="application/atom+xml" href="http://ubuntulandia.blogcindario.com/atom.xml" />    <entry>        <title>Instalar driver de tarjetas WIFI con Ndiswrapper</title>        <link rel="alternate" type="text/html" href="http://ubuntulandia.blogcindario.com/2009/04/00002-instalar-driver-de-tarjetas-wifi-con-ndiswrapper.html"/>        <published>2009-04-11T09:46:52+01:00</published>        <updated>2009-04-11T09:46:52+01:00</updated>        <id>http://ubuntulandia.blogcindario.com/2009/04/00002-instalar-driver-de-tarjetas-wifi-con-ndiswrapper.html</id>        <author>            <name>HugoRep</name>        </author>        <summary type="html">Algunas tarjetas WIFI no tienen drivers nativos para linux, el proyecto NDISwrapper&lt;br /&gt;(http://ndiswrapper.sourceforge.net/) se encarga de ayudarnos con ese problema.&lt;br /&gt;NDISwrapper es una soluci&amp;oacute;n que nos permite utilizar nuestros drivers de windows en linux.&lt;br /&gt;Para ello realizaremos los siguientes pasos:&lt;br /&gt;Comprobamos que el chipset de nuestra tarjeta est&amp;eacute; soportado por NDISwrapper en la &lt;br /&gt;lista de chipsets soportados&lt;br /&gt;(http://ndiswrapper.sourceforge.net/mediawiki/index.php/List) .&lt;br /&gt;Necesitamos los drivers windows de nuestra tarjeta WIFI. Estos drivers los podemos &lt;br /&gt;conseguir o bien del cd de nuestra tarjeta WIFI, del fabricante o de la p&amp;aacute;gina de&lt;br /&gt;ndiwrapper (http://ndiswrapper.sourceforge.net/mediawiki/index.php/List) . Cuando &lt;br /&gt;obtengamos estos drivers los copiamos a nuestro disco duro.&lt;br /&gt;Instalar NDISwrapper&lt;br /&gt;$ sudo aptitude install ndiswrapper-common ndiswrapper-modules-1.9 ndiswrapper-utils-1.9 &lt;br /&gt;Instalamos los drivers en linux.&lt;br /&gt;$ sudo ndiswrapper -i nuestrodriver.inf&lt;br /&gt;Este comando copiara el archivo .sys y creara una configuraci&amp;oacute;n para &amp;eacute;l. Podemos encontrarlo&lt;br /&gt;en /etc/ndiswrapper&lt;br /&gt;Comprobamos que esta instalado correctamente&lt;br /&gt;$ sudo ndiswrapper -l&lt;br /&gt;Cargamos el modulo&lt;br /&gt;$ sudo depmod -a&lt;br /&gt;$ sudo modprobe ndiswrapper&lt;br /&gt;Configuramos la interface&lt;br /&gt;Configuramos modprobe para que se cargue ndiswrapper cuando el interface de la &lt;br /&gt;tarjeta wireless este activado&lt;br /&gt;$ sudo ndiswrapper -m&lt;br /&gt;Configuramos para que al arrancar el sistema cargue ndiswrapper&lt;br /&gt;$ sudo gedit /etc/modules&lt;br /&gt;A&amp;ntilde;adimos ndiswrapper al final del archivo y guardamos.&lt;br /&gt;&lt;br /&gt;fuente: http://www.guia-ubuntu.org</summary>    </entry>    <entry>        <title>Titan, uno de los programas más fácilmente instalables sobre SunOS o Solaris</title>        <link rel="alternate" type="text/html" href="http://ubuntulandia.blogcindario.com/2009/04/00001-titan-uno-de-los-programas-mas-facilmente-instalables-sobre-sunos-o-solaris.html"/>        <published>2009-04-11T09:44:27+01:00</published>        <updated>2009-04-11T09:44:27+01:00</updated>        <id>http://ubuntulandia.blogcindario.com/2009/04/00001-titan-uno-de-los-programas-mas-facilmente-instalables-sobre-sunos-o-solaris.html</id>        <author>            <name>HugoRep</name>        </author>        <summary type="html">Para corroborar la inseguridad de los sistemas Unix instalados tal y como se distribuyen, o m&amp;iacute;nimamente configurados, hemos hecho la prueba con uno de los sistemas considerados m&amp;aacute;s seguros: Solaris, de la empresa Sun Microsystems, Inc.. Hemos instalado Solaris 7 sobre un PC, cerrado la mayor&amp;iacute;a de servicios ofrecidos (en /etc/inetd.conf), y controlado el acceso a otros (telnet, finger, ftp...) mediante TCP Wrappers: justo lo que la mayor parte de administradores har&amp;iacute;an antes de poner el sistema a funcionar. Tras estos pasos, hemos ejecutado el programa de auditor&amp;iacute;a autom&amp;aacute;tica Titan, que detecta problemas de seguridad en la m&amp;aacute;quina local (para m&amp;aacute;s informaci&amp;oacute;n sobre este software se puede consultar [FPA98]).&lt;br /&gt;Instalaci&amp;oacute;n de Titan&lt;br /&gt;&lt;br /&gt;Hemos elegido Titan justamente por ser uno de los programas m&amp;aacute;s f&amp;aacute;cilmente instalables sobre SunOS o Solaris: al tratarse de un conjunto de shellscripts, el administrador no ha de preocuparse por ning&amp;uacute;n proceso de compilaci&amp;oacute;n (con los posibles errores que &amp;eacute;ste puede causar), ni conocer t&amp;eacute;cnicas avanzadas de seguridad para poder utilizarlo (como otros programas que presentan una multitud de opciones diferentes que se pueden combinar entre ellas, de forma que quien los quiera utilizar debe conocer bastante bien ciertos t&amp;eacute;rminos de Unix y de la seguridad, que no suelen ser triviales). Tanto la instalaci&amp;oacute;n de Titan como su ejecuci&amp;oacute;n son muy sencillos. &lt;br /&gt;Para instalar Titan, una vez desempaquetado el fichero, hemos de ejecutar simplemente&lt;br /&gt;Titan-Config, con la opci&amp;oacute;n -i (la opci&amp;oacute;n -d desinstala el software. El programa de instalaci&amp;oacute;n nos preguntar&amp;aacute; si deseamos hacer copias de seguridad de los ficheros que se modifiquen al ejecutar Titan; por nuestra seguridad, podemos decirle que s&amp;iacute; (y):&lt;br /&gt;&lt;br /&gt;anita:/export/home/toni/Security/Tools# gzip -d Titan,v3.0.FCS.tar.gz&lt;br /&gt;anita:/export/home/toni/Security/Tools# tar xvf Titan,v3.0.FCS.tar&lt;br /&gt;anita:/export/home/toni/Security/Tools# cd Titan,v3.0.FCS&lt;br /&gt;anita:/export/home/toni/Security/Tools/Titan,v3.0.FCS# ./Titan-Config -i&lt;br /&gt;checking for dependencies...&lt;br /&gt;finding out where we are...&lt;br /&gt;we are in '/export/home/toni/Security/Tools/Titan,v3.0.FCS'&lt;br /&gt;&lt;br /&gt;checking out your system...&lt;br /&gt;this system runs: SunOS-5.7-i86pc&lt;br /&gt;we will be using: sol2x86&lt;br /&gt;&lt;br /&gt;setting up links...&lt;br /&gt;removing old links...&lt;br /&gt;linking bin into path...&lt;br /&gt;linking lib into path...&lt;br /&gt;linking logs into path...&lt;br /&gt;linking src into path...&lt;br /&gt;linking tmp into path...&lt;br /&gt;linking done.&lt;br /&gt;cleaning up is_root, sanity_check, Titan...&lt;br /&gt;pulling in local Titan script...&lt;br /&gt;&amp;nbsp;&lt;br /&gt;Run Titan utilites with 'Titan -[v,f,i]' after reading the Docs...&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp; OR&lt;br /&gt;Run Titan using a config file. (Titan -c sample.Server) after reading the Docs&amp;nbsp; &lt;br /&gt;&amp;nbsp;&lt;br /&gt;Titan can backup all of the files it modifies; This is recommended&lt;br /&gt;proceed? y/n: y&lt;br /&gt;Okay... Checking for backup program...&lt;br /&gt;Found backtit.sh - Backing up system files now... This might take a while..&lt;br /&gt;Creating backup dir in : /export/home/toni/Security/Tools/Titan,v3.0.FCS/\&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; arch/sol2sun4/bin/Backup//1013990418&lt;br /&gt;Generating listings.....&lt;br /&gt;Calculating and backing up files now...................................\&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ............ Done!!&lt;br /&gt;...&lt;br /&gt;...&lt;br /&gt;Saved off 44 files to: /export/home/toni/Security/Tools/Titan,v3.0.FCS/\&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; arch/sol2sun4/bin/Backup//1013990418&lt;br /&gt;See details in savelist: /export/home/toni/Security/Tools/Titan,v3.0.FCS/\&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; arch/sol2sun4/bin/Backup//1013990418/../SaveList.1013990418&lt;br /&gt;Restore by running /export/home/toni/Security/Tools/Titan,v3.0.FCS/\&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; arch/sol2sun4/bin/lib/untit.sh -[g,r]&lt;br /&gt;anita:/export/home/toni/Security/Tools/Titan,v3.0.FCS#&lt;br /&gt;&lt;br /&gt;Una vez instalado Titan (todo a partir del directorio actual, no genera ficheros en ning&amp;uacute;n otro lugar de nuestros sistemas de archivos) podemos ejecutar ya el programa de auditor&amp;iacute;a, con la opci&amp;oacute;n -v para que no realice ning&amp;uacute;n cambio en nuestro sistema, sino que simplemente se limite a informarnos de los posibles problemas de seguridad que podemos tener; si deseamos ver el funcionamiento de cada uno de los shellscripts invocados por Titan, podemos utilizar la opci&amp;oacute;n -i, y si lo que queremos es solucionar los problemas detectados, la opci&amp;oacute;n -f (cuidado si hacemos esto, la pol&amp;iacute;tica de seguridad de Titan es tan estricta que podemos dejar al sistema s&amp;oacute;lamente utilizable por el root).&lt;br /&gt;&lt;br /&gt;Ejecuci&amp;oacute;n de Titan&lt;br /&gt;En nuestro caso, queremos que Titan nos informe de los problemas de seguridad que detecte, pero que no los solucione &amp;eacute;l:&lt;br /&gt;&lt;br /&gt;anita:/export/home/toni/Security/Tools/Titan,v3.0.FCS# ./Titan -v&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/add-umask.sh now.....&lt;br /&gt;Output to ../logs/modules/add-umask.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No umask file /etc/init.d/umask.sh found&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/adjust-arp-timers.sh now.....&lt;br /&gt;Output to ../logs/modules/adjust-arp-timers.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&lt;br /&gt;Checking for ARP timers in /etc/rc2.d/S69inet&lt;br /&gt;&lt;br /&gt;ARP timers are not set - FAILS CHECK&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/adjust.syn-timeout.sh now.....&lt;br /&gt;Output to ../logs/modules/adjust.syn-timeout.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;ERROR - This script is Only needed on Solaris 2.4 and older&lt;br /&gt;please see Sun's patch (Patch 103582-11 currently) for a better fix&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/automount.sh now.....&lt;br /&gt;Output to ../logs/modules/automount.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;File /etc/rc2.d/S74autofs exists...&lt;br /&gt;Automounter =&lt;br /&gt;/usr/lib/autofs/automountd /usr/sbin/automount /usr/bin/pkill - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/create-issue.sh now.....&lt;br /&gt;Output to ../logs/modules/create-issue.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Cannot read /etc/issue - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/decode.sh now.....&lt;br /&gt;Output to ../logs/modules/decode.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Decode disabled - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable-L1-A.sh now.....&lt;br /&gt;Output to ../logs/modules/disable-L1-A.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;./modules/disable-L1-A.sh: ./sanity_check: No such file or directory&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable-NFS.bind.sh now.....&lt;br /&gt;Output to ../logs/modules/disable-NFS.bind.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Verifying port settings using ndd&lt;br /&gt;privileged port definition is currently set to 1024&lt;br /&gt;&lt;br /&gt;You should run disable-NFS.bind.sh with the -F option (port=1024)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable-accounts.sh now.....&lt;br /&gt;Output to ../logs/modules/disable-accounts.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Checking 11 Users....&lt;br /&gt;Checking that shell set to noshell for:&lt;br /&gt;daemon bin adm lp uucp nuucp listen nobody noaccess nobody4 ppp&lt;br /&gt;Verify shell status....&lt;br /&gt;&lt;br /&gt;daemon shell = - FAILS CHECK&lt;br /&gt;bin shell = - FAILS CHECK&lt;br /&gt;adm shell = - FAILS CHECK&lt;br /&gt;lp shell = - FAILS CHECK&lt;br /&gt;uucp shell = - FAILS CHECK&lt;br /&gt;nuucp shell = /usr/lib/uucp/uucico - FAILS CHECK&lt;br /&gt;listen shell = - FAILS CHECK&lt;br /&gt;nobody shell = - FAILS CHECK&lt;br /&gt;noaccess shell = - FAILS CHECK&lt;br /&gt;nobody4 shell = - FAILS CHECK&lt;br /&gt;ppp shell = /usr/sbin/pppls - FAILS CHECK&lt;br /&gt;&lt;br /&gt;11 Users Not Secured Out Of 11&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable-core.sh now.....&lt;br /&gt;Output to ../logs/modules/disable-core.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Core dump size has not been set: FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable-ping-echo.sh now.....&lt;br /&gt;Output to ../logs/modules/disable-ping-echo.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Ping echo response allowed - FAILED CHECK&lt;br /&gt;Run ./modules/disable-ping-echo.sh with -[Ff] to fix...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/disable_ip_holes.sh now.....&lt;br /&gt;Output to ../logs/modules/disable_ip_holes.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Checking ip_forwarding...&lt;br /&gt;ip_forwarding disabled - PASSES CHECK&lt;br /&gt;Checking ip_forward_src_routed...&lt;br /&gt;ip_forward_src_routed disabled - PASSES CHECK&lt;br /&gt;Checking ip_forward_directed_broadcasts...&lt;br /&gt;ip_forward_directed_broadcasts disabled - PASSES CHECK&lt;br /&gt;Checking ip_ignore_redirect...&lt;br /&gt;ip_ignore_redirect enabled - PASSES CHECK&lt;br /&gt;Checking ip_strict_dst_multihoming...&lt;br /&gt;ip_strict_dst_multihoming enabled - PASSES CHECK&lt;br /&gt;System configured as 'notrouter' - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/dmi-2.6.sh now.....&lt;br /&gt;Output to ../logs/modules/dmi-2.6.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;ERROR - This script is Only supported on Solaris 2.6 and newer, &lt;br /&gt;please use one of the other scripts for your OS&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/eeprom.sh now.....&lt;br /&gt;Output to ../logs/modules/eeprom.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Architecture = i86pc&lt;br /&gt;Eeprom security-mode not supported on this host&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/file-own.sh now.....&lt;br /&gt;Output to ../logs/modules/file-own.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Checking /usr file ownership&lt;br /&gt;Found 25345 files in /usr that should be root owned&lt;br /&gt;Checking /sbin file ownership&lt;br /&gt;Found 13 files in /sbin that should be root owned&lt;br /&gt;Checking /usr group permissions&lt;br /&gt;Found 0 files in /usr that should be set group g-w&lt;br /&gt;Checking /sbin group permissions&lt;br /&gt;Found 0 files in /sbin that should be set group g-w&lt;br /&gt;Checking /etc group permissions&lt;br /&gt;Found 0 files in /etc that should be set group g-w&lt;br /&gt;Checking /opt group permissions&lt;br /&gt;Found 0 files in /opt that should be set group g-w&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/fix-cronpath.sh now.....&lt;br /&gt;Output to ../logs/modules/fix-cronpath.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;File /var/spool/cron/crontabs/root exists; continuing&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc is not writable by world - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc is not writeable by group - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/cron.d is not writable by world - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/cron.d is not writeable by group - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr is not writable by world - PASSES CHECK.&lt;br /&gt;drwxrwxr-x&amp;nbsp; 32 root&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1024 Oct&amp;nbsp; 8 00:58 /usr&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr is writeable by group - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/sbin is not writable by world - PASSES CHECK.&lt;br /&gt;drwxrwxr-x&amp;nbsp;&amp;nbsp; 5 root&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 4608 Sep 24 01:32 /usr/sbin&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/sbin is writeable by group - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib is not writable by world - PASSES CHECK.&lt;br /&gt;drwxrwxr-x&amp;nbsp; 42 root&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 10240 Oct&amp;nbsp; 8 00:55 /usr/lib&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib is writeable by group - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib/fs is not writable by world - PASSES CHECK.&lt;br /&gt;drwxrwxr-x&amp;nbsp; 13 root&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 512 Sep 23 18:33 /usr/lib/fs&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib/fs is writeable by group - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib/fs/nfs is not writable by world - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib/fs/nfs is not writeable by group - PASSES CHECK.&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/bin is not writable by world - PASSES CHECK.&lt;br /&gt;drwxrwxr-x&amp;nbsp;&amp;nbsp; 3 root&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 7680 Oct&amp;nbsp; 8 00:52 /usr/bin&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/bin is writeable by group - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/cron.d/logchecker ownership should be changed to root &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/lib/newsyslog ownership should be changed to root &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/bin/rdate ownership should be changed to root &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; /usr/sbin/rtc ownership should be changed to root &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; No cron.allow file - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/fix-modes.sh now.....&lt;br /&gt;Output to ../logs/modules/fix-modes.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Only supported on Solaris 2.2 thru 2.6&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/fix-stack.sh now.....&lt;br /&gt;Output to ../logs/modules/fix-stack.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;ERROR - This script is Only known to work on Solaris 2.5.[0-5]&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/fix-stack.sol2.6.sh now.....&lt;br /&gt;Output to ../logs/modules/fix-stack.sol2.6.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Stack Protection not currently set - Run fix-stack.sol2.6.sh -F&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/ftpusers.sh now.....&lt;br /&gt;Output to ../logs/modules/ftpusers.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No /etc/ftpusers file in place...&lt;br /&gt;Should contain at least:&lt;br /&gt;&lt;br /&gt;root&lt;br /&gt;daemon&lt;br /&gt;sys&lt;br /&gt;bin&lt;br /&gt;adm&lt;br /&gt;lp&lt;br /&gt;smtp&lt;br /&gt;uucp&lt;br /&gt;nuucp&lt;br /&gt;listen&lt;br /&gt;nobody&lt;br /&gt;noaccess&lt;br /&gt;news&lt;br /&gt;ingres&lt;br /&gt;audit&lt;br /&gt;admin&lt;br /&gt;sync&lt;br /&gt;nobody4&lt;br /&gt;&lt;br /&gt;Please Run with '-F/f' to Fix - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/hosts.equiv.sh now.....&lt;br /&gt;Output to ../logs/modules/hosts.equiv.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No /etc/hosts.equiv - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/inetd.sh now.....&lt;br /&gt;Output to ../logs/modules/inetd.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;File /etc/inet/inetd.conf exists - Checking...&lt;br /&gt;name Closed - PASSES CHECK&lt;br /&gt;exec Closed - PASSES CHECK&lt;br /&gt;comsat Closed - PASSES CHECK&lt;br /&gt;talk Open - FAILS CHECK&lt;br /&gt;uucp Closed - PASSES CHECK&lt;br /&gt;smtp Closed - PASSES CHECK&lt;br /&gt;tftp Closed - PASSES CHECK&lt;br /&gt;finger Open - FAILS CHECK&lt;br /&gt;systat Closed - PASSES CHECK&lt;br /&gt;netstat Closed - PASSES CHECK&lt;br /&gt;rquotad Closed - PASSES CHECK&lt;br /&gt;rusersd Closed - PASSES CHECK&lt;br /&gt;sprayd Closed - PASSES CHECK&lt;br /&gt;walld Closed - PASSES CHECK&lt;br /&gt;rexd Closed - PASSES CHECK&lt;br /&gt;shell Closed - PASSES CHECK&lt;br /&gt;login Closed - PASSES CHECK&lt;br /&gt;exec Closed - PASSES CHECK&lt;br /&gt;comsat Closed - PASSES CHECK&lt;br /&gt;time Closed - PASSES CHECK&lt;br /&gt;echo Closed - PASSES CHECK&lt;br /&gt;discard Closed - PASSES CHECK&lt;br /&gt;daytime Closed - PASSES CHECK&lt;br /&gt;chargen Closed - PASSES CHECK&lt;br /&gt;100087 Closed - PASSES CHECK&lt;br /&gt;rwalld Closed - PASSES CHECK&lt;br /&gt;rstatd Closed - PASSES CHECK&lt;br /&gt;100068 Closed - PASSES CHECK&lt;br /&gt;100083 Closed - PASSES CHECK&lt;br /&gt;100221 Closed - PASSES CHECK&lt;br /&gt;fs Closed - PASSES CHECK&lt;br /&gt;ufsd Closed - PASSES CHECK&lt;br /&gt;100232 Closed - PASSES CHECK&lt;br /&gt;100235 Closed - PASSES CHECK&lt;br /&gt;536870916 Closed - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/keyserv.sh now.....&lt;br /&gt;Output to ../logs/modules/keyserv.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;In /etc/rc2.d/S71rpc keyserv ; user nobody enabled - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/log-tcp.sh now.....&lt;br /&gt;Output to ../logs/modules/log-tcp.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/loginlog.sh now.....&lt;br /&gt;Output to ../logs/modules/loginlog.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No /var/adm/loginlog file - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/lpsched.sh now.....&lt;br /&gt;Output to ../logs/modules/lpsched.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;In /etc/rc2.d/S80lp lpsched is enabled - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/nfs-portmon.sh now.....&lt;br /&gt;Output to ../logs/modules/nfs-portmon.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;NFS port monitor disabled - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/nsswitch.sh now.....&lt;br /&gt;Output to ../logs/modules/nsswitch.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;passwd -&amp;gt; files - PASSES CHECK&lt;br /&gt;group -&amp;gt; files - PASSES CHECK&lt;br /&gt;hosts -&amp;gt; files - PASSES CHECK&lt;br /&gt;networks -&amp;gt; files - PASSES CHECK&lt;br /&gt;protocols -&amp;gt; files - PASSES CHECK&lt;br /&gt;rpc -&amp;gt; files - PASSES CHECK&lt;br /&gt;ethers -&amp;gt; files - PASSES CHECK&lt;br /&gt;netmasks -&amp;gt; files - PASSES CHECK&lt;br /&gt;bootparams -&amp;gt; files - PASSES CHECK&lt;br /&gt;publickey -&amp;gt; files - PASSES CHECK&lt;br /&gt;netgroup -&amp;gt; files - PASSES CHECK&lt;br /&gt;automount -&amp;gt; files - PASSES CHECK&lt;br /&gt;aliases -&amp;gt; files - PASSES CHECK&lt;br /&gt;services -&amp;gt; files - PASSES CHECK&lt;br /&gt;sendmailvars -&amp;gt; files - PASSES CHECK&lt;br /&gt;15 of 15 entries set to files as default - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/nuke-sendmail.sh now.....&lt;br /&gt;Output to ../logs/modules/nuke-sendmail.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Sendmail is enabled in /etc/rc2.d/S88sendmail - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/pam-rhosts-2.6.sh now.....&lt;br /&gt;Output to ../logs/modules/pam-rhosts-2.6.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;PAM allows rhosts for rlogin : FAILS CHECK&lt;br /&gt;PAM allows rhosts for rsh : FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/passwd.sh now.....&lt;br /&gt;Output to ../logs/modules/passwd.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;All accounts have passwords - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/powerd.sh now.....&lt;br /&gt;Output to ../logs/modules/powerd.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Power management not set to be run by root - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/psfix.sh now.....&lt;br /&gt;Output to ../logs/modules/psfix.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Could not find /etc/rc3.d/S79tmpfix - FAILS CHECK&lt;br /&gt;Run with -[Ff] option to fix&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/rhosts.sh now.....&lt;br /&gt;Output to ../logs/modules/rhosts.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;Running against /etc/passwd...&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/rootchk.sh now.....&lt;br /&gt;Output to ../logs/modules/rootchk.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /.login - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/.login - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/default/login - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /.cshrc - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/skel/local.cshrc - Contains . - FAILS CHECK&lt;br /&gt;set path=(/bin /usr/bin /usr/ucb /etc .)&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/skel/local.login - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/skel/local.profile - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /.profile - Clean of . - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /etc/profile - Clean of . - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/routed.sh now.....&lt;br /&gt;Output to ../logs/modules/routed.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&lt;br /&gt;The route daemon advertises routes - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/sendmail.sh now.....&lt;br /&gt;Output to ../logs/modules/sendmail.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No sendmail.cf.titan2 exists - FAILS CHECK&lt;br /&gt;Run with -[Ff] option to fix.&lt;br /&gt;Checking for smrsh&lt;br /&gt;smrsh not found in /sbin - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/smtp-banner.sh now.....&lt;br /&gt;Output to ../logs/modules/smtp-banner.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;No /etc/mail/sendmail.cf exists - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/smtpbanner-8.8.sh now.....&lt;br /&gt;Output to ../logs/modules/smtpbanner-8.8.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;ERROR - This script is Only supported on patched Solaris 2.6 and newer, &lt;br /&gt;please use one of the other scripts for your OS&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/snmpdx-2.6.sh now.....&lt;br /&gt;Output to ../logs/modules/snmpdx-2.6.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;ERROR - This script is Only supported on Solaris 2.6 and newer, &lt;br /&gt;please use one of the other scripts for your OS&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/syslog.sh now.....&lt;br /&gt;Output to ../logs/modules/syslog.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;File /etc/syslog.conf exists checking contents....&lt;br /&gt;Syslog auth notice messages disabled - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/tcp-sequence.sh now.....&lt;br /&gt;Output to ../logs/modules/tcp-sequence.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;TCP_STRONG_ISS=1&lt;br /&gt;/etc/default/inetinit - has the system default . - FAILS CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/userumask.sh now.....&lt;br /&gt;Output to ../logs/modules/userumask.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&amp;nbsp;Checking for umask 022 in&amp;nbsp;&amp;nbsp; &lt;br /&gt;&amp;nbsp;/etc/.login&lt;br /&gt;&amp;nbsp;/etc/default/login&lt;br /&gt;&amp;nbsp;/etc/profile&lt;br /&gt;&amp;nbsp;/etc/skel/local.cshrc&lt;br /&gt;&amp;nbsp;/etc/skel/local.login&lt;br /&gt;&amp;nbsp;/etc/skel/local.profile&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value other than 022 in /etc/.login - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value other than 022 in /etc/.login - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value 022 in /etc/profile - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value 022 in /etc/skel/local.cshrc - PASSES CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value other than 022 in /etc/skel/local.login - FAILS CHECK&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Umask value other than 022 in /etc/skel/local.profile - FAILS CHECK&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; UMASK value 022 in /etc/default/login - PASSES CHECK&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/utmp.sh now.....&lt;br /&gt;Output to ../logs/modules/utmp.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;File utmp permissions o-w - PASSES CHECK&lt;br /&gt;File utmp permissions o-w - PASSES CHECK&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/vold.sh now.....&lt;br /&gt;Output to ../logs/modules/vold.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&lt;br /&gt;File /etc/rc2.d/S92volmgt and /usr/sbin/vold exists - FAILS CHECK&lt;br /&gt;&lt;br /&gt;Run with -[Ff] option to fix&lt;br /&gt;&lt;br /&gt;_____________________________________________________&lt;br /&gt;*=*=*=*=* Running modules/ziplock.sh now.....&lt;br /&gt;Output to ../logs/modules/ziplock.sh.V.042506&lt;br /&gt;-----------------------------------------------------&lt;br /&gt;&lt;br /&gt;Unfortunately this is a FIX ONLY utility.....&lt;br /&gt;As noted in the Introduction statement it may break functionality&lt;br /&gt;for all non-root users if run -F&lt;br /&gt;&lt;br /&gt;The list of files is as follows and may be manually modified&lt;br /&gt;by editing this script and inserting/commenting out as you&lt;br /&gt;like. Just make sure you know what it is you are changing:&lt;br /&gt;&lt;br /&gt;The list of binaries that would be modified is:&lt;br /&gt;&lt;br /&gt;/usr/bin/at&lt;br /&gt;/usr/kvm/eeprom&lt;br /&gt;/sbin/su&lt;br /&gt;/usr/bin/atq&lt;br /&gt;/usr/bin/atrm&lt;br /&gt;/usr/bin/chkey&lt;br /&gt;/usr/bin/crontab&lt;br /&gt;/usr/bin/eject&lt;br /&gt;/usr/bin/fdformat&lt;br /&gt;/usr/bin/newgrp&lt;br /&gt;/usr/bin/ps&lt;br /&gt;/usr/bin/rcp&lt;br /&gt;/usr/bin/rdist&lt;br /&gt;/usr/bin/rlogin&lt;br /&gt;/sbin/sulogin&lt;br /&gt;/usr/bin/login&lt;br /&gt;/usr/bin/rsh&lt;br /&gt;/usr/bin/su&lt;br /&gt;/usr/bin/tip&lt;br /&gt;/usr/bin/uptime&lt;br /&gt;/usr/bin/yppasswd&lt;br /&gt;/usr/bin/w&lt;br /&gt;/usr/bin/ct&lt;br /&gt;/usr/bin/cu&lt;br /&gt;/usr/bin/uucp&lt;br /&gt;/usr/bin/uuglist&lt;br /&gt;/usr/bin/uuname&lt;br /&gt;/usr/bin/uustat&lt;br /&gt;/usr/bin/uux&lt;br /&gt;/usr/lib/exrecover&lt;br /&gt;/usr/lib/fs/ufs/ufsdump&lt;br /&gt;/usr/lib/fs/ufs/ufsrestore&lt;br /&gt;/usr/lib/pt_chmod&lt;br /&gt;/usr/lib/sendmail.mx&lt;br /&gt;/usr/lib/acct/accton&lt;br /&gt;/usr/sbin/allocate&lt;br /&gt;/usr/sbin/mkdevalloc&lt;br /&gt;/usr/sbin/mkdevmaps&lt;br /&gt;/usr/sbin/ping&lt;br /&gt;/usr/sbin/sacadm&lt;br /&gt;/usr/sbin/static/rcp&lt;br /&gt;/usr/sbin/whodo&lt;br /&gt;/usr/sbin/deallocate&lt;br /&gt;/usr/sbin/list_devices&lt;br /&gt;/usr/openwin/bin/xlock&lt;br /&gt;/usr/openwin/bin/xdm&lt;br /&gt;/usr/openwin/lib/mkcookie&lt;br /&gt;/usr/ucb/ps&lt;br /&gt;/usr/vmsys/bin/chkperm&lt;br /&gt;/usr/bin/passwd&lt;br /&gt;/usr/bin/csh&lt;br /&gt;/etc/lp/alerts/printer&lt;br /&gt;/usr/kvm/crash&lt;br /&gt;/usr/kvm/eeprom&lt;br /&gt;/usr/bin/netstat&lt;br /&gt;/usr/bin/nfsstat&lt;br /&gt;/usr/bin/write&lt;br /&gt;/usr/bin/ipcs&lt;br /&gt;/usr/sbin/arp&lt;br /&gt;/usr/sbin/prtconf&lt;br /&gt;/usr/sbin/swap&lt;br /&gt;/usr/sbin/sysdef&lt;br /&gt;/usr/sbin/wall&lt;br /&gt;/usr/sbin/dmesg&lt;br /&gt;/usr/openwin/bin/Xsun&lt;br /&gt;/usr/openwin/bin/wsinfo&lt;br /&gt;/usr/openwin/bin/mailtool&lt;br /&gt;/usr/openwin/bin/xload&lt;br /&gt;/usr/openwin/bin/kcms_calibrate&lt;br /&gt;/usr/openwin/bin/kcms_configure&lt;br /&gt;/usr/openwin/bin/kcms_server&lt;br /&gt;/var/adm/messages&lt;br /&gt;/var/log/syslog&lt;br /&gt;/var/adm/pacct&lt;br /&gt;anita:/export/home/toni/Security/Tools/Titan,v3.0.FCS#&lt;br /&gt;&lt;br /&gt;Mirando por encima el resultado ofrecido por Titan, vemos que ha detectado &amp;lt;casi 50 posibles problemas! (cada mensaje FAILS CHECK denota una alarma, mientras que cada mensaje PASSES CHECK denota un test satisfactorio).&lt;br /&gt;&lt;br /&gt;A la vista de estos resultados, y teniendo en cuenta que hemos utilizado una versi&amp;oacute;n m&amp;aacute;s o menos moderna de Solaris (la versi&amp;oacute;n 7 10/98, si hubi&amp;eacute;ramos comprobado una versi&amp;oacute;n de Solaris o SunOS m&amp;aacute;s antigua habr&amp;iacute;amos detectado seguramente muchos m&amp;aacute;s problemas), parece claro que un sistema Unix instalado tal y como se distribuye, o con una configuraci&amp;oacute;n de seguridad m&amp;iacute;nima -nuestro caso-, representa un grave problema ya no s&amp;oacute;lo para la m&amp;aacute;quina en cuesti&amp;oacute;n, sino para toda la red en la que trabaja. Por tanto, el uso de cualquier herramienta que nos ayude a solucionar, o al menos a localizar problemas, va a ser &amp;uacute;til.</summary>    </entry></feed>