Trusted Solaris Installation and Configuration

Copy Configuration Files for Distribution to Clients

  1. As root at label ADMIN_LOW, create a directory that cannot be deleted between reboots.


    # mkdir /export/clientfiles
    

  2. As root at label ADMIN_HIGH, use the File Manager to copy your modified label_encodings file to the /export/clientfiles directory.

    See "How to Copy to and from a Portable Medium" if you are unsure of the procedure.

  3. If you modified other files, copy them to the /export/clientfiles directory. You must be root at label ADMIN_LOW.

    For example, most sites will want to copy the /var/sadm/smc/toolboxes/tsol_nameservice/tsol_nameservice.tbx file to the client machines. A site that is using a modified tnrhtp file, DNS, and auditing might copy the files /etc/security/audit_control, /etc/security/audit_startup, /etc/security/tsol/tnrhtp, /etc/resolv.conf, and /etc/nsswitch.conf.

  4. Transfer the label_encodings file to a diskette labeled ADMIN_HIGH.

    If you are unsure of the steps, see "To Copy to a Diskette".

  5. Transfer the other files to a diskette labeled ADMIN_LOW.