[comp.sys.sgi] security

frobinso@cirm.northrop.COM (Fletcher Robinson) (06/21/88)

What is SGI's policy regarding replacement of defective mass storage
media(hard disk drives) from a secure area when under warranty or
service maintenance contract and security will not allow you to remove
the media?

doelz@urz.unibas.ch (Reinhard Doelz) (06/07/89)

Hi, 
to answer a question what do you do if the booting does not work ? 
i.e., if you want to modify the scripts in /etc/init.d without boouting the
tape

The soulution is a hacker solution which proved to work on 4D/70,80,and 120.
It shows that once you have access to the console and a software tape on hand, 
you get into *any* 4D without providing any password.

1) go to >> prompt (old PROM versions) 
2) start the installer
3) manual installation
4) administrative 
5) spawn a shell and look into /root/

There, you will find  /root/etc/init.d, and you might want to copy original
SGI scripts from /etc/init.d

Nasty thing: You say 
cp /etc/passwd /root/etc/passwd
and reboot the machine. 

root doesn't have a password no longer !!!


- Reinhard

jmb@patton.sgi.com (Jim Barton) (06/07/89)

In article <99*doelz@urz.unibas.ch>, doelz@urz.unibas.ch (Reinhard Doelz) writes:
	[ yet another example of how to get into a 4D ]
> 
> - Reinhard

Just remember, no machine is safe if you can get at the physical machine and
console.  True of VAX'es, SUN's and everything else in the world.  The only
"secure" machine is one in a locked room with no network attached.

If you're really paranoid, the room should have an isolation transfer and
be constructed as a Faraday cage as well.  You'll also need an armed gaurd
to make sure nobody unwanted gets in.

-- Jim Barton
Silicon Graphics Computer Systems    "UNIX: Live Free Or Die!"
jmb@sgi.sgi.com, sgi!jmb@decwrl.dec.com, ...{decwrl,sun}!sgi!jmb

  "I used to be disgusted, now I'm just amused."
			- Elvis Costello, 'Red Shoes'
--