/usr/lib/tiger/systems/HPUX/config is in tiger-otheros 1:3.2.4~rc1-1.
This file is owned by root:root, with mode 0o644.
The actual contents of the file can be viewed below.
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 | # -*- sh -*-
#
# tiger - A UN*X security checking system
# Copyright (C) 1993 Douglas Lee Schales, David K. Hess, David R. Safford
#
# This program is free software; you can redistribute it and/or modify
# it under the terms of the GNU General Public License as published by
# the Free Software Foundation; either version 1, or (at your option)
# any later version.
#
# This program is distributed in the hope that it will be useful,
# but WITHOUT ANY WARRANTY; without even the implied warranty of
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
# GNU General Public License for more details.
#
# Please see the file `COPYING' for the complete copyright notice.
#
# HPUX/config - 06/14/93
# 10/1/2003 - jfs - Applied a patch provided by Ryan Bradetich to add TEE
# 09/03/2003 - jfs - Applied a patch provided by Ryan Bradetich to support
# default locations of SSHD_CONFIG
# 06/21/2003 - jfs - Applied a patch provided by Ryan Bradetich to support
# PWCK properly
# 06/26/2003 - jfs - Exported command to check for trusted mode and
# also some variables which were defined but not exported.
# Added GRPCK.
# 11/18/2003 - jfs - Add EXPAND (patch from Ryan Bradetich)
# 11/19/2003 - jfs - Add REALPATH and SNEFRU (patch from Ryan Bradetich)
#
#-----------------------------------------------------------------------------
#
UUID=`/usr/bin/id | /bin/sed -e 's/uid=\([0-9][0-9]*\).*$/\1/'`
export UUID
[ "$UUID" != "0" -a "$Tiger_TESTMODE" != 'Y' ] && {
echo " " 1>&2
echo "This script must be run from a super-user account." 1>&2
echo " " 1>&2
exit 1
}
CAT=/bin/cat
LS=/bin/ls
# To show group ownership
LSGROUP=
# -L to show file instead of symlink
LSLINK="-L"
RM=/bin/rm
AWK=/usr/bin/awk
GREP=/bin/grep
EGREP=/bin/egrep
# Silent grep
SGREP="$BASEDIR/util/sgrep"
SED=/bin/sed
SORT=/bin/sort
COMM=/usr/bin/comm
TAIL=/bin/tail
HEAD=/bin/head
MV=/bin/mv
TR=/usr/bin/tr
JOIN=/usr/bin/join
GROUPSS=/usr/bin/groups
FILECMD=/usr/bin/file
UNIQ=/usr/bin/uniq
PASTE=/usr/bin/paste
BASENAME=/bin/basename
CHOWN=/bin/chown
CHMOD=/bin/chmod
LN=/bin/ln
WC=/bin/wc
TEE=/bin/tee
MESG=/usr/bin/mesg
ID=/usr/bin/id
EXPAND=/usr/bin/expand
CUT=/usr/bin/cut
REALPATH=$BINDIR/realpath
SNEFRU=$BINDIR/snefru
# Setup PWCK depending on the status of the system
# (is it in trusted mode?)
/usr/lbin/getprdef -r >/dev/null 2>/dev/null
if [ $? -ne 4 ] ; then
PWCK="/usr/sbin/pwck -s"
else
PWCK=/usr/sbin/pwck
fi
GRPCK=/usr/sbin/grpck
#
# Disable diff because it doesn't support -D... so we can not
# use diff... this will cause reports to be mailed as is... future
# refinement will handle this.
#
#DIFF=/bin/diff
#
# For check_trusted
GETPRDEF=/usr/lbin/getprdef
#
# For SSH Daemon configuration
if [ -f /opt/ssh/etc/sshd_config ]
then
SSHD_CONFIG="/opt/ssh/etc/sshd_config"
else
SSHD_CONFIG="/etc/opt/openssh/sshd_config"
fi
#
MAILER=/usr/bin/mailx
SENDMAILS="/usr/lib/sendmail"
SENDMAILCF="/usr/lib/sendmail.cf"
#
export CAT LS LSGROUP LSLINK RM AWK GREP EGREP SGREP SED
export SORT COMM TAIL HEAD MV TR JOIN GROUPSS FILECMD UNIQ PASTE
export BASENAME CHOWN CHMOD LN DIFF MAILER WC TEE ID EXPAN CUT MESG
export PWCK GRPCK GETPRDEF
export REALPATH SNEFRU SSHD_CONFIG SENDMAILS SENDMAILCF
#
UNAME=/bin/uname
GETHOSTNAME=/bin/hostname
EXPR=/bin/expr
STRINGS=/usr/bin/strings
FIND=/bin/find
FINDXDEV=-xdev
FMT=$CAT
CC=/bin/cc
PS=/bin/ps
DATE=/bin/date
DATECMD="$DATE +%y%m%d"
TIMECMD="$DATE +%H:%M"
TESTLINK=-h
TESTEXEC=-x
#
#
export UNAME GETHOSTNAME EXPR STRINGS FIND FINDXDEV
export FMT CC PS DATE DATECMD TIMECMD TESTLINK TESTEXEC
#
WAIT=wait
#
# Using NIS (YP)?
YPCAT=/usr/bin/ypcat
#
#
YPSERVER="NO"
($PS -el | $GREP ypserv | $SGREP -v $GREP) && YPSERVER="YES"
export WAIT YPCAT YPSERVER
#
MAILSPOOL=/usr/mail
#
CRONSPOOL=/usr/spool/cron/crontabs
#
ETCSHELLS=/etc/shells
#
export MAILSPOOL CRONSPOOL ETCSHELLS
#
CDIR="$BASEDIR/systems"
eval `
while read var file
do
if [ -f "$CONFIG_DIR/$file" ]; then
loc="$CONFIG_DIR"
elif [ -f "$CDIR/$OS/$REL/$REV/$ARCH/$file" ]; then
loc="$CDIR/$OS/$REL/$REV/$ARCH"
elif [ -f "$CDIR/$OS/$REL/$REV/$file" ]; then
loc="$CDIR/$OS/$REL/$REV"
elif [ -f "$CDIR/$OS/$REL/$file" ]; then
loc="$CDIR/$OS/$REL"
elif [ -f "$CDIR/$OS/$file" ]; then
loc="$CDIR/$OS"
else
loc=""
fi
if [ "$loc" != "" ]; then
echo $var="$loc/$file;"
else
echo "$var=;"
fi
echo "export $var;"
done << EOL
GEN_PASSWD_SETS genpasswd
GEN_GROUP_SETS gengroups
GEN_CRON_FILES gen_cron
GEN_ALIAS_SETS genaliases
CHECK_CRON check_cron
GEN_BOOTPARAM_SETS genbootparam
GEN_EXPORT_SETS genexports
GEN_SERVICES_SETS genservices
GET_MOUNTS genmounts
SIGNATURE_FILE signatures
SERVICESFILE services
INETDFILE inetd
FILE_ACL fal.db
SUID_LIST suid_list
REL_FILE_EXCP suidpath.db
GETCLIENTDIRS genclients
GEN_INETD_SETS gen_inetd
GETDISKS getdisks
EMBEDDEDLIST embedlist
GETUSERHOME getuserhome
EOL
`
|