Tool for encrypted server ID file for server start?

hello !

we want encrypt the server ID file with 2 different passwords.

when the server has to (re)start, a tool should automatically transmit the passwords to the server, that no one has to do this manually. the tool should run under AIX 5.3.

does anyone know such a tool ?

tank you,

olaf

Subject: tool for encrypted server ID file for server start ?

Sorry to say I do not know if there is anything that could serve as a tool for this, but I would be interested what kind of advantage in terms of security (or other fields) you want to achieve with using passwords on a server ID ?

Thanks

Stefan

Subject: RE: tool for encrypted server ID file for server start ?

hey stefan,

our customer wants that for security issues.

GSX server guard can do this for example, but its running only under Windows, not AIX…

cheers,

olaf

Subject: RE: tool for encrypted server ID file for server start ?

Olaf,

But how does it provide security if you can simply reboot and the passwords will be fed automatically?

regards,

raphael

Subject: RE: tool for encrypted server ID file for server start ?

well, its not about the booting issue, but if someone can copy the unprotected server.id, will be able to access server and unencrypted databases.and to prevent this, we have to set a password on this ID.

greetings,

olaf

Subject: RE: tool for encrypted server ID file for server start ?

1 - Nobody should have file system or physical access to your servers except those who would normally possess the password in any case.

2 - If your ACLs are set up correctly, a server id is useless unless it is running on a server.

Subject: RE: tool for encrypted server ID file for server start ?

i know, i know. but our customer is the german military force and this is one of their instructions…

instructions don’t make sense all the time :wink:

Subject: tool for encrypted server ID file for server start ?

If you do this, then why bother with pw in the first place?