OBSOLETE Patch-ID# 148340-06


Download this patch from My Oracle Support

Your use of the firmware, software and any other materials contained in this update is subject to My Oracle Support Terms of Use, which may be viewed at My Oracle Support.
For further information on patching best practices and resources, please see the following links:
Copyright (c) 2012, Oracle and/or its affiliates. All rights reserved.

Keywords: security password policy t4
Synopsis: Obsoleted by: 148340-07 SunOS 5.10: password policy patch
Date: Apr/18/2016


Install Requirements: Reboot after installing this patch to activate the changes delivered. An alternative may be specified in the Special Install Instructions.

Solaris Release: 10

SunOS Release: 5.10

Unbundled Product:

Unbundled Release:

Xref: This patch available for x86 as patch 148341

Topic: SunOS 5.10: password policy patch

Relevant Architectures: sparc

Bugs fixed with this patch:

Sun CR # Bug #
712646915763860
22612359
691655015615108
692228715619434
709664715745143
709887215746979
712178415761343


Changes incorporated in this version: 22612359

Patches accumulated and obsoleted by this patch: 148165-04

Patches which conflict with this patch:

Patches required with this patch: 120011-14 127127-11 137137-09 142909-17 144500-19 (or greater)

Obsoleted by:

Files included with this patch:

/etc/security/policy.conf
/usr/bin/logins
/usr/bin/passwd
/usr/include/rpcsvc/nispasswd.h
/usr/include/rpcsvc/nispasswd.x
/usr/lib/llib-lpasswdutil.ln
/usr/lib/passwdutil.so.1
/usr/lib/security/pam_unix_account.so.1
/usr/lib/security/sparcv9/pam_unix_account.so.1
/usr/lib/sparcv9/llib-lpasswdutil.ln
/usr/lib/sparcv9/passwdutil.so.1
/usr/sbin/passmgmt
/usr/sbin/rpc.nispasswdd

Problem Description:

22612359 passwd(1) -l/-u should not update lastchg
 
(from 148340-05)
 
15763860 allow passwdutil.so to ignore unknown backends
 
(from 148340-04)
 
        This revision accumulates generic Sustaining  patch 148165-04
        into Solaris S10U11 update.
 
(from 148340-03)
 
        This revision accumulates generic Sustaining  patch 148165-03
        into Solaris S10U11 update.
 
(from 148340-02)
 
        This revision accumulates generic Sustaining  patch 148165-02
        into Solaris S10U11 update.
 
(from 148340-01)
 
        This revision accumulates generic Sustaining  patch 148165-01
        into Solaris S10U11 update.
 
(from 148165-04)
 
6916550 password changes in NIS+ may fail if the fix for CR#6563443 is only installed on NIS+ client
 
(from 148165-03)
 
7121784 patch of policy.conf w/change of i.policyconf missing pkg_i.policyconf, fails zone Update On Attach
 
(from 148165-02)
 
6922287 problem with NIS
 
(from 148165-01)
 
7096647 need /etc/security/policy.conf entry for 6812488, 6968856 passwd changes from Solaris 10
7098872 Solaris 10 needs new password/locking semantics to be optional


Patch Installation Instructions:
--------------------------------
 
Please refer to the man pages for instructions on using 'patchadd'
and 'patchrm' commands provided with Solaris.
 
The following example installs a patch to a standalone machine:
 
       example# patchadd /var/spool/patch/123456-07
 
The following example removes a patch from a standalone system:
 
       example# patchrm 123456-07
 
For additional examples please see the appropriate man pages. Any
other special or non-generic installation instructions should be
described below as special instructions.


Special Install Instructions:
-----------------------------
 
NOTE 1:  If the default for the new RESTRICTIVE_LOCKING parameter in
         /etc/security/policy.conf is to be changed, then it is recommended
         to restart user services immediately after applying this patch.
         This can be done via reboot or "init 1" followed by "init 3"
 
         Otherwise there can be some long-running  processes that do not yet
         honor the new variable.
 
         The policy.conf included in this patch contains an explanation of
         the new RESTRICTIVE_LOCKING parameter.


README -- Last modified date: Wednesday, October 12, 2016