1. AIXÓû§°²È«ÐԵĸÅÄî
AIXµÄÿ¸öÓû§ÓÐΨһµÄÓû§Ãû¡¢Óû§IDºÍ¿ÚÁÎļþÊôÖ÷È¡¾öÓÚÓû§ID£»root¿ÉÒÔ¸ü¸ÄÎļþÊôÖ÷£»ÏµÍ³È±Ê¡rootΪ³¬¼¶Óû§£»ÏµÍ³Óû§adm¡¢sys¡¢bin²»ÔÊÐíµÇ¼£»ÐèÒª¹²ÏíͬһÀàÎļþµÄÓû§¿ÉÒÔ¹éÈëͬһ¸ö×飻×î³£ÓõÄ×éÓÐÁ½¸ö£¬systemΪ¹ÜÀíÔ±×飬staffΪÆÕͨÓû§×é¡£
ϵͳ°²È«ÐԵĻù±¾ÔÔòÊÇ£ºÓû§±»¸³ÓèΨһµÄÓû§Ãû¡¢Óû§ID£¨UID£©ºÍ¿ÚÁî¡£Óû§µÇ¼ºó£¬¶ÔÎļþ·ÃÎʵĺϷ¨ÐÔÈ¡¾öÓÚUID¡£
Îļþ´´½¨Ê±£¬UID×Ô¶¯Éú³ÉΪÎļþÊôÖ÷¡£Ö»ÓÐÎļþÊôÖ÷ºÍroot²ÅÄÜÐ޸ķÃÎÊÐí¿ÉȨ¡£ÐèÒª¹²Ïíͬһ×éÎļþµÄÓû§¿ÉÒÔ¹éÈëͬһ¸ö×éÖС£Ã¿¸öÓû§¿ÉÊôÓÚ¶à¸ö×顣ÿ¸ö×é±»¸³ÓèΨһµÄ×éÃûºÍ×éID£¨GID£©£¬GIDÒ²±»¸³¸øд´½¨µÄÎļþ¡£
Ó¦¸ÃÌرðÇ¿µ÷µÄÊǶÔÓÚrootÌØȨµÄ¿ØÖÆ£º
Ó¦ÑϸñÏÞÖÆʹÓÃrootÌØȨµÄÈËÊý£»
root¿ÚÁîÓ¦ÓÉϵͳ¹ÜÀíÔ±ÒÔ²»¹«¿ªµÄÖÜÆÚ¸ü¸Ä£»
²»Í¬µÄ»úÆ÷²ÉÓò»Í¬µÄroot¿ÚÁ
ϵͳ¹ÜÀíÔ±Ó¦ÒÔÆÕͨÓû§µÄÉí·ÝµÇ¼£¬È»ºóÓÃsuÃüÁî½øÈëÌØȨ£»
rootËùÓõÄPATH»·¾³±äÁ¿Óëϵͳ°²È«ÐÔ¹ØϵÖØ´ó¡£
°²È«ÐÔÈÕÖ¾ÊÇϵͳ°²È«µÄÖØÒª±£ÕÏ£¬ÓоÑéµÄϵͳ¹ÜÀíÔ±¾³£Ê¹ÓÃÆä×ö°²È«ÐÔ¼ì²é¡£SuÃüÁîÖ´ÐеĽá¹û´æ·ÅÔÚ/var/adm/sulogÖУ»Óû§µÇ¼ºÍÍ˳öµÇ¼µÄ¼Ç¼´æ·ÅÔÚ/var/adm/wtmpºÍ/etc/utmpÖУ¬¿ÉÓÃwhoÃüÁî²é¿´£»·Ç·¨ºÍʧ°ÜµÇ¼µÄ¼Ç¼´æ·ÅÔÚ/etc/security/failedloginÖУ¬Í¬ÑùÓÃwhoÃüÁî²é¿´£¬Î´ÖªµÄµÇ¼Ãû¼ÇΪunknown¡£
2. ÎļþºÍĿ¼µÄ´æÈ¡Ðí¿ÉȨ
ÎļþºÍĿ¼ÓÐÒ»×éÐí¿ÉȨ룬²ÉÓñê×¼µÄ¶Á¡¢Ð´ºÍÖ´ÐÐÀ´¶¨ÒåÈý¸ö¼¶±ðµÄÐí¿ÉȨ£ºÓû§£¨ÎļþÊôÖ÷£©¡¢×éºÍÆäËûÈË£¬ÁíÍ⸽¼ÓµÄÈýÖÖÐí¿ÉȨλÊÇSUID¡¢SGIDºÍSVTX£¨Õ³×Å룩¡£
´øSUIDλµÄ¿ÉÖ´ÐÐÎļþÒâζ×ÅÎļþÔËÐÐʱ£¬Æä½ø³ÌÒÔÎļþµÄÓÐЧUIDÔËÐС£Shell³ÌÐò²»Ö§³ÖSUID£¬SUID¶ÔĿ¼ÎÞÒâÒ壻´øSGIDλµÄ¿ÉÖ´ÐÐÎļþÒâζ×ÅÎļþÔËÐÐʱ£¬Æä½ø³ÌÒÔÎļþÊô×éµÄÓÐЧGIDÔËÐУ»´øSGIDµÄĿ¼±íʾÔÚ¸ÃĿ¼Ï´´½¨µÄÎļþ/Ŀ¼½«¼Ì³ÐĿ¼µÄ×éID£¬¶øºöÂÔ´´½¨ÕßµÄÊô×飻AIXÖеÄÕ³×Åλ¶ÔÎļþÎÞÒâÒ壬´øÕ³×ÅλµÄĿ¼Òâζ×Å£º¼´Ê¹¶ÔĿ¼¾ßÓÐдÐí¿ÉȨ£¨Èç/tmp£©,Óû§Ò²²»ÄÜËæ±ãɾ³ýĿ¼ÏµÄÎļþ£¬³ý·ÇÊÇÎļþÊôÖ÷»òĿ¼ÊôÖ÷¡£
Ðí¿ÉȨλ Îļþ Ŀ¼
R Óû§¾ßÓжÁÐí¿ÉȨ Óû§ÁгöĿ¼µÄÄÚÈÝ
W Óû§¿ÉÐÞ¸ÄÎļþÄÚÈÝ Óû§¿ÉÔÚĿ¼Ï´´½¨»òɾ³ýÎļþ
X Óû§¿ÉÖ´ÐиÃÎļþ Óû§¿Écdµ½¸ÃĿ¼²¢ÔÚPATHÖÐÒýÓøÃĿ¼
SUID Ö´ÐиóÌÐòʱ¾ßÓÐÎļþÊôÖ÷µÄÓÐЧUID ----
SGID ³ÌÐòÔËÐÐʱ¾ßÓÐÎļþ×éµÄÓÐЧGID Ŀ¼Ï´´½¨µÄÎļþ¼Ì³ÐĿ¼µÄGID
SVTX ---- Ö»ÓÐÎļþ»òĿ¼ÊôÖ÷ÓÐȨÔÚ¸ÃĿ¼ÏÂɾ³ýÎļþ
3. °²È«ÐÔÎļþ
´æ·ÅÓû§ÊôÐԺͿØÖÆ·ÃÎÊÐí¿ÉȨµÄÎļþºÍĿ¼ÈçÏ£º
/etc/passwdÖаüº¬ºÏ·¨Óû§£¨²»º¬¿ÚÁ
/etc/groupÖаüº¬ºÏ·¨×飻
/etc/securityÖаüº¬ÆÕͨÓû§ÎÞȨ·ÃÎʵݲȫÐÔÎļþ£»
/etc/security/passwdÖаüº¬Óû§¿ÚÁ
/etc/security/userÖаüº¬Óû§ÊôÐÔ¡¢¿ÚÁîÔ¼ÊøµÈ£»
/etc/security/limitsÖаüº¬Óû§Ê¹ÓÃ×ÊÔ´ÏÞÖÆ£»
/etc/security/environÖаüº¬Óû§»·¾³ÉèÖã»
/etc/security/login.cfgÖаüº¬µÇ¼ÉèÖã»
/etc/security/groupÖаüº¬×éµÄÊôÐÔ¡£
4. Óû§»·¾³µÄºÏ·¨ÐÔ¼ì²é
ÒÔϽéÉܽøÐÐÓû§»·¾³ºÏ·¨ÐÔ¼ì²éµÄÈý¸öÃüÁ
pwdckÑéÖ¤±¾»úÈÏÖ¤ÐÅÏ¢µÄºÏ·¨ÐÔ£¬¼ì²é/etc/passwdºÍ/etc/security/passwdµÄÒ»ÖÂÐÔ£¬ÒÔ¼°Óë/etc/security/login.cfgºÍ/etc/security/userµÄÒ»ÖÂÐÔ£»
usrckÑéÖ¤Óû§¶¨ÒåµÄºÏ·¨ÐÔ£¬¼ì²é/etc/passwd¡¢/etc/security/user¡¢/etc/security/limitsºÍ/etc/security/passwdÖеÄÓû§ÐÅÏ¢£¬Í¬Ê±Ò²¼ì²é/etc/groupºÍ/etc/security/group£¬ÒÔ±£Ö¤Êý¾ÝµÄÒ»ÖÂÐÔ¡£
grpckÑéÖ¤×éµÄºÏ·¨ÐÔ£¬¼ì²é/etc/group¡¢/etc/security/groupºÍ/etc/security/userÖ®¼äµÄÊý¾ÝÒ»ÖÂÐÔ¡£
ÉÏÊöÃüÁîÓÉroot»òsecurity×éµÄ³ÉÔ±Ö´ÐУ¬ÓÃÓÚÔÚÐÞ¸ÄÓû§ÅäÖÃÖ®ºó×öÇåÀí¹¤×÷¡£