We do not want to grant execution permission on /tmp for UNAB.
search cancel

We do not want to grant execution permission on /tmp for UNAB.

book

Article ID: 67908

calendar_today

Updated On:

Products

CA Privileged Access Manager - Server Control (PAMSC) CA Privileged Identity Management Endpoint (PIM)

Issue/Introduction

Due to a security policy we need to prevent command execution for everyone from the /tmp directory. How can we install the UNIX Authentication Broker (UNAB) in such an environment?

Environment

rivileged Identity Manager PIM
Component:

Resolution

- logon as root to the target system where you want to install UNAB on

- copy the UNAB installation files to any other directory but /tmp

  It is required that root has full access to this location, i.e. rwx

- set this location as the temporary directory for installation operations using the "-t tmp_dir" parameter while preparing the installer package, e.g. for Linux you would use

 

  # customize_uxauth_rpm -t tmp_dir [-d pkg_location] pkg_filename

 

- continue with the installation of UNAB as usual