Veritas-bu

[Veritas-bu] Netbackup / Port security.

2000-12-15 10:14:59
Subject: [Veritas-bu] Netbackup / Port security.
From: Sixbury, Dan dsixbury AT saint-lukes DOT org
Date: Fri, 15 Dec 2000 09:14:59 -0600
I have some clients that the admins decided to lock security down on, and
now I am under the impression that the security is locking out Netbackup
from performing backups.  I have both NT and Unix clients.

1.  Does telnet have to be enabled?
2.  How does the master server obtain access to the client?  I know we have
the typical 13782 port enabled for bpcd, but the question is how does
Netbackup communicate with the clients if for example it doesn't have the
root password?  Hence the possible security issue of coming in on a
netbackup port to obtain root access.

On the NT client, the admin account was changed, so I assumed that I needed
to update the services for Netbackup to show the new "real" admin as the
owner of the service.  I have also used an allow statement within
hosts.allow file for the clients in question and bpcd is in the inetd.conf
file.

The errors that I am recieving are 24 on the unix client and 57 on the NT
client.

I guess the real question is how does Netbackup connect to a client with
root/admin access and how do we ensure that this is secure?

Thanks a lot for any help with this one.,
Dan



<Prev in Thread] Current Thread [Next in Thread>