[bit.listserv.novell] Server Security

LANSYS@UBVMS.BITNET (01/13/90)

Hello,  we were told when we first began installing novell networks
        to set up the rights for SYS: as ROS and add additional rights
        where necessary for certain applications who require Create
        ,delete, etc rights.

        Well, even though we have a fairly secure menuing system (SABER)
        we know that people can escape to the network prompt in several
        applications.  What we did not know till recently, is that if they
        can escape to the network prompt and CD around into various
        applications they can copy the software off the server to their
        local drives.

        Are we missing something very obvious here, this seems like a low
        level of security.  We do not like to hide all the files, since it
        is a real hassel to do administration.

        Any solutions, addons, experiences will be appreciated.

LAN Systems             S.U.N.Y at Buffalo
LANSYS@UBVMS

urbans@ADMIN.KTH.SE (Urban Sundstr|m) (01/14/90)

One way to make it more difficult for users to cd arounds directories
is to hide all the directories with the command "flagdir * h"
Then all the subdirectories will be hidden. I have exeperimented
around that, and it will need some more "sofistication" if it
also will hide directories from the PC Tools ver 5.5 ......

Urban Sundstrom
urbans@admin.kth.se

QUINN@USUHSB.BITNET (KEVIN L.) (01/16/90)

Hello,

Somewhere there was a utility called MPROOT (maybe Rodan) that would
make the assigned drive appear as the root.  So instead of seeing
Z:\PUBLIC >   you see  Z:\ >!!
Well, if you can use that it will solve your problems in one direction.

Happy Hunting,

Kevin Quinn
USUHS
QUINN@USUHSB.BITNET