Deleting accounts

From: Ray Lauff <ray_at_thunder.ocis.temple.edu>
Date: Wed, 02 Sep 1998 18:03:08 -0400 (EDT)

We're running with C2 security and just upgraded several of our servers to
4.0d. I've noticed that there has been a change in how a couple of the
account management commands work!

    edauth -r userid
             Now it doesn't remove the user's tcb auth.db entry

    userdel -r userid
             Now it doesn't remove the users password entry

Has DU gone bats? :)

Apparently, someone has informed Compaq that C2 security shouldn't
actually delete the account but instead list it as Retired. In
addition, the man pages don't mention anything about this new 4.0d
feature.

I did read about it as a one liner on page 4-22 of the 4.0d
release notes, but I'm suprised the man page wasn't updated. There
is no mention of a change to the edauth command, although it now
places the u_retired field identifier in the entry.

My problem is now if we create a new account with the same user
name as an account that was """deleted""" the account doesn't
work.

My question is, how can I delete these entries in the /etc/passwd
and /usr/var/tcb/files/auth.db without resorting to homebrew
solutions? (forget about using the GUI - it's not an option for
us here as these commands all run in batch.)

Thanks.

ray

-- 
Ray Lauff : ray_at_thunder.ocis.temple.edu : (215) 204-5678 : Temple University
Received on Wed Sep 02 1998 - 22:04:04 NZST

This archive was generated by hypermail 2.4.0 : Wed Nov 08 2023 - 11:53:38 NZDT