![]() |
![]() |
| |||||||||||||
|
For unusual upgrade cases, you might have to use the smattrpop command to populate RBAC security files in the following instances:
For more information, see "Role-Based Access Control (Overview)" in System Administration Guide: Security Services. Prerequisites for Using the Solaris Management Console in a Name Service EnvironmentThe following table identifies what you need to do before you can use the Solaris Management Console in a name service environment.
Management ScopeThe Solaris Management Console uses the term management scope to refer to the name service environment that you want to use with the selected management tool. The management scope choices for the Users and Computers and Networks tools are LDAP, NIS, NIS+, or files. The management scope that you select during a console session should correspond to the primary name service identified in the /etc/nsswitch.conf file. The /etc/nsswitch.conf FileThe /etc/nsswitch.conf file on each system specifies the policy for name service lookups (where data is read from) on that system. Note - You must make sure that the name service accessed from the console, which you specify through the console Toolbox Editor, appears in the search path of the /etc/nsswitch.conf file. If the specified name service does not appear there, the tools might behave in unexpected ways, resulting in errors or warnings. When using the Solaris managements tools in a name service environment, you might impact many users with a single operation. For example, if you delete a user in the NIS name service, that user is deleted on all systems that are using NIS. If different systems in your network have different /etc/nsswitch.conf configurations, unexpected results might occur. So, all systems to be managed with the Solaris management tools should have a consistent name service configuration.
|
# /usr/sadm/bin/smc edit & |
Select Open from the Toolbox menu.
Select the This Computer icon in the Toolboxes: window.
Click Open.
The This Computer toolbox opens in the window.
Select the This Computer icon again in the Navigation pane.
Select Add Folder from the Action menu.
Use the Folder wizard to add a new toolbox for your name service environment.
Name and Description - Provide a name in the Full Name window. Click Next.
For example, "NIS tools" for the NIS environment.
Provide a description in the Description window. Click Next.
For example, "tools for NIS environment."
Icons - Use the default value for the Icons. Click Next.
Management Scope - Select Override.
Select your name service under the Management Scope pull-down menu.
Add the name service master name in the Server: field, if necessary.
Add the domain managed by the server in the Domain: field.
Click Finish.
The new toolbox appears in the left Navigation pane.
Select the new toolbox icon.
Select Save As from the Toolbox menu.
Enter the toolbox path name in the Local Toolbox Filename: dialog box. Use the .tbx suffix.
/var/sadm/smc/toolboxes/this_computer/toolbox-name.tbx |
Click Save.
The new toolbox appears in the Navigation pane in the console window.
After you have created a name service toolbox, you can put a name service tool into it. For more information, see How to Add a Tool to a Toolbox.
How to Add a Tool to a ToolboxIn addition to the default tools that ship with the console, additional tools that can be launched from the console are being developed. As these tools become available, you can add one or more tools to an existing toolbox.
You can also create a new toolbox, for either local management or network management, and then add tools to the new toolbox.
Become superuser or assume an equivalent role.
Start the Toolbox Editor, if necessary.
# /usr/sadm/bin/smc edit & |
Select the toolbox.
If you want to work in a name service, select the toolbox you just created in the Toolbox Editor.
For more information, see How to Create a Toolbox for a Specific Environment.
Select Add Tool from the Action menu.
Use the Add Tool wizard to add the new tool.
Server Selection - Add the name service master in the Server: window. Click Next.
Tools Selection - Select the tool you want to add from the Tools: window. Click Next.
If this tool box is a name service toolbox, choose a tool you want to work in a name service environment. For example, the Users Tools.
Name and Description - Accept the default values. Click Next.
Icons - Accept the default values, unless you have created custom icons. Click Next.
Management Scope - Accept the default value "Inherit from Parent." Click Next.
Tool Loading - Accept the default "Load tool when selected." Click Finish.
Select Save from the Toolbox menu to save the updated toolbox.
The Local Toolbox window is displayed.
Previous Contents Index Next ![]() |