Article

sashwin's picture
article
Reads:

1700

Score:
0
0
 
Comments:

0

Securing Administrator Password for Unattended Installation, Upgrade, and Uninstallation of Windows eDirectory 8.8 SP6

Author Info

17 November 2010 - 4:57pm
Submitted by: sashwin

(View Disclaimer)

A password has to be provided in a configuration file called response file during the installation (response.ni) and uninstallation (remove.rsp) of eDirectory. The password has to be provided in the variable called 'Admin Password'.

The password has to be provided in clear text till eDirectory 8.8 SP6 and if the administrator forgets to delete the response file after an installation, upgrade, or uninstallation, then any users having access to the file can obtain the password.

This security problem is resolved by providing an option to enter the password in an environmental variable. Here is the format the user has to specify to enter the password in an environmental variable:

Admin Password=env:<environmental_variable>

The Administrator can specify his own environmental variable in place of environmental_variable and it has to be set before the installation, upgrade, or uninstallation of Windows eDirectory. This will prevent leaking the administrator password to others.


Disclaimer: As with everything else at Cool Solutions, this content is definitely not supported by Novell (so don't even think of calling Support if you try something and it blows up).

It was contributed by a community member and is published "as is." It seems to have worked for at least one person, and might work for you. But please be sure to test, test, test before you do anything drastic with it.




User Comments

© 2013 Novell