Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Enjoy members-only rewards and discounts
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

EMC® VNX® Series Security Configuration Guide for VNX

PDF

Restrict anonymous root login

About this task

The term anonymous root login is used to indicate that the root user is allowed to login directly. When anonymous root login is restricted, to gain root privileges you must first log in as another user (nasadmin, for example) and then su to root. Restricting anonymous root login on the serial console and SSH enhances system security.

Steps

  1. Log in to the CLI with your username and password.
    You must have root privileges to access the /etc/securetty and the /etc/ssh/sshd_config files.
  2. Edit the /etc/securetty file using vi or another text editor.
    Remove the ttyS1 entry to restrict anonymous root login on the serial console.
  3. Edit the /etc/ssh/sshd_config file using vi or another text editor.
    1. Un-comment the PermitRootLogin parameter and set the value to no to restrict anonymous root login using SSH.
    2. Restart the SSH daemon to re-read the configuration file.
      For example, run: /etc/init.d/sshd restart.

Next steps

Anonymous root access using SSH is required to complete a VNX OE for file upgrade. Set the value of the PermitRootLogin parameter back to yes and restart the SSH daemon before starting an upgrade.


Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\