|
Enterprise Security Manager security response policies
12/20/2001
Enterprise Security Manager (ESM) response policies are configured by members of the Symantec Security Response team to respond to recent security incidents and newly-detected security vulnerabilities without waiting for scheduled module Security Update releases.
Response policy names are identified and sorted by "R-" prefixes in the Policies branch of the ESM Enterprise tree in the ESM Console.
The Solaris Login Buffer Overflow response policy checks patches on Solaris 2.5.1, 2.6, 2.7, and 2.8 systems to determine whether these systems are vulnerable to the Buffer Overflow in System V Derived Login.
Symantec also recommends that you avoid using services such as telnetd and rlogind that authenticate with login. These services are much less secure than other services such as sshd.
Please see the Solaris Login Buffer Overflow Response Policy Release Notes for additional information.
Download Solaris Login Buffer Overflow ESM Response Policy Release Notes
Download Solaris Login Buffer Overflow ESM Response Policy Installer
Note: This response policy requires that ESM 5.1 and SU9 or later be installed on the ESM manager and agents that will use these policies.
|