Cover | Table of Contents
constant width bolda|ba or
b).
command+sugroups attribute
for root in
/etc/security/user.
pam_wheelmodule in the su file.
SULOG setting in /etc/default/su.chuser ttys="/dev/lft,/dev/tty0" rlogin=false rootsecure from all entries in
/etc/ttys except
console.
constant width bolda|ba or
b).
command+sugroups attribute
for root in
/etc/security/user.
pam_wheelmodule in the su file.
SULOG setting in /etc/default/su.chuser ttys="/dev/lft,/dev/tty0" rlogin=false rootsecure from all entries in
/etc/ttys except
console.
pam_securettymodule.
CONSOLE=/dev/console
sudo facility.
After successfully entering his password, a user can use the
sudo command without having to re-enter it for a
grace period (defaults to 5 minutes).
-v-K-u user-l# alias definitions Host_Alias NAME=host[,host...] Named list of hosts User_Alias NAME=user[,user...] Named list of users Cmnd_Alias NAME=cmd[,cmd...] Named list of commands # user access entries user host = cmds [: host = cmds...]
%), or
previously-defined user alias, and host and
cmds are lists of individual hosts/commands
and/or defined aliases. Precede an item with ! to
deny access.
sudo package provides the
smit, wsm samsysinstall admintool, smcredhat-config-* (Red Hat); yast2 (SuSE)0905134702.
true
value; then the specified actions are carried out on the matching
file.
-atime n-mtime n-newer file-size n-links n-type cf (plain file),
d (directory), l (symbolic
link), p (named pipe), s
(socket), b (block special file),
c (character special file).
-fstype type-name fname-perm [-]p-user usernamelscfg List all devices. lsdev -C -s scsi List all SCSI devices. lscfg -v -l device Display device details. lsattr -E -H -l device Display device attributes.
pciconf -l -v List PCI devices. camcontrol devlist List SCSI devices. usbdevs List USB devices.
ioscan -f -n Display detailed device listing. ioscan -f -n -C disk Limit to device class.
lsdev List major devices. scsiinfo -l List SCSI devices. lspci List PCI devices. lsusb List USB devices.
getdev List devices. getdev type=class Limit to device class. devattr -v device Display device detail.
/dev/hdiskn (refers to
entire disk)
/dev/[r]ppnsmx
(often shortened to
/dev/[r]ppnx)
/dev/[r]dsk/cktidn
/dev/[sd|hd]ym/dev/[r]dsk/cktid0sm
ktid0-R operates
recursively on any directories in the file list.
[class]+|-|=[type]
u for user, g for
group, o for other, a for all.
a is the default (although on some systems,
omitting the access class causes the specified permissions to be
limited by the current umask).
+ to add
permissions, - to remove them, and
= to set permissions to the specified value.
r (read), x (execute),
w (write), or one of the special types listed in
the following section.
Xt (save text mode/sticky bit) [numeric 1000]s (SetUID and SetGID) [numeric 4000 and 2000]l (file locking: Solaris, some Linux) [numeric 2000]-R option performs a recursive operation on
directories in files.
acleditsyslogd_enable and syslogd_flag. SYSLOGD_PARAMS and KERNEL_LOGLEVEL.syslog
"facilities," which are sources of
system messages. Multiple facilities are separated by commas.
mark.
* refers to all logged-in users), or
@hostname (forward it
to the syslog daemon on that host). Note that
specified files must already exist.kern usermail lpr daemon auth authpriv auth and
authpriv.
marksyslog time stamp messages (generated
every 20 minutes by default).
local*ftp, news,
uucp, syslog, etc.
emerg alert crit err warning notice bootlist command to set the device
order.
boot command (add
-s for single-user mode). To boot an alternate kernel, use
commands like:
unload
load filename
boot
> prompt)search command. Use
bo xx to boot the
device labeled xx in the
search output (e.g., CD-ROM).
ISL> prompt)hpux command. Add -is
(for single-user mode) and/or a pathname to boot an alternate kernel.
lilo boot loader)linux). Add single to boot to
single-user mode.
grub boot loader)grub> root (hd0,0) Partition to boot from grub> kernel path ro root=/dev/xdyn Kernel /root devs grub> initrd path If needed grub> boot Initiate the boot
h or s, y
is the disk letter, and n is the partition
number.
L1-a or Stop-a to get the
ok prompt. From there, the boot
command starts a boot (-s selects single-user
mode). The boot cdrom command boots from
CD-ROM.init to reread its
configuration file.
init to run the commands in
/etc/inittab without changing the current
(numeric) run level.
x) when a shadow password file
is in use. AIX uses an exclamation point (!), and
FreeBSD uses an asterisk (*).
shells field in the
usw stanza of
/etc/security/login.cfg:
shells = /bin/sh, /bin/csh, ...
user:pwd:changed:minlife:maxlife:warn:inactive:expires:
user:pwd:UID:GID:class:pwd-expire:acct-expire:user-info:...
password field.&^Zjobsfg [job]bg [job]%n
refers to background job n.
%?str refers to the
background job whose command string contains the specified character
string.
~^Zrlogin session. Add an additional tilde
for each level of nesting (e.g., ~~^Z suspends a
second-level rlogin session back to the
first-level rlogin session, while
~^Z suspends the second-level session back to the
local session).
al option
to the first two commands produces a different listing, which
displays the process priority and nice number.
USER (HP-UX: UID)PID%CPU%MEM SZ RSS TT (HP-UX: TTY)STAT (HP-UX: S)RSITZDXKWN<TIMECOMMANDSTARTED (HP-UX: STIME)Fpsmanual page)
PPID NI CP (HP-UX: C)PRI)
PRI:/path.
//host/share.
The FreeBSD format is
//user@host/share.
dump utility.
fsck should check
filesystems.
fcsk)
special files are listed as the first two fields.
yes or
no, depending on whether the filesystem should be
mounted automatically at boot time with mount -a.
dump frequency field is not included.dev = /dev/logical-volumevol = "name"vfs = jfs2jfs2 for local,
nfs for NFS.
log = /dev/log-volmount = true|falsecheck = noptions = listquota = keywordsuserquota and groupquota enable
user and group disk quotas.
lpd_enable="YES"LP=1DEFAULT_PRINTER=namestatus printerstart printerabort or
stop command.
stop printerabort printerclean printerdisable printerenable printerdown printerdisable plus stop).
up printerenable plus start).
topq printer job-IDrows ncolumns n-]echoerase ckill cintr ceof csusp clnext cwerase crprnt cstop cstart cflush cquit coddpevenp-paritycstopb-cstopb means one stop bit).clocal-clocal means soft).sane"command"getty command init should run for this serial line.network keyword (for pseudo terminals), or
dialin (for dial-up modems).
on|off Is line enabled? secure Allow root logins. window=cmd init should run cmd before the command in field 2. group=name Define group of teminals for /etc/login.conf.
gettycommand as their final field (see Section for
more about the inittab file).
ifconfig [options] [interface]
-a-l (FreeBSD and AIX)mktcpip or SMIT.hostname="name" ifconfig_iface="ip-addr netmask mask"
HOSTNAME="name" INTERFACE_NAME[n]=name IP_ADDRESS[n]=addr SUBNET_MASK[n]=mask INTERFACE_STATE[n]=up|down
n Red
Hatn
SuSE
DEVICE=name Red Hat BOOTPROTO=static|dhcp IPADDR=addr NETMASK=mask ONBOOT=yes|no Red Hat only STARTMODE=yes|no SuSE only
HOSTNAME="name"
iface:
ifconfig command arguments (optional).
entstat adapter lanscanifconfig interface|
Suffix
|
Subnet mask
|
Max. hosts
|
|---|---|---|
|
/22
|
255.255.252.0
|
1022
|
|
/23
|
255.255.254.0
|
510
|
|
/24
|
255.255.255.0
|
254
|
|
/25
|
255.255.255.128
|
126
|
|
/26
|
255.255.255.192
|
62
|
|
/27
|
255.255.255.224
|
30
|
|
/28
|
255.255.255.240
|
14
|
|
/29
|
255.255.255.248
|
6
|
|
/30
|
255.255.255.252
|
2
|
sendmail_enable="YES"
export SENDMAIL_SERVER=1
START_SENDMAIL="yes"
DAEMON=yes