This paper is meant to serve as an introductory guide to the basic security and server hardening functions present in AIX. Many of the features and functions shown throughout this guide are applicable to AIX 4.3 and above, but are more directed toward AIX 5.2. This guide attempts to cover a lot of ground and offers useful and necessary insight for anyone administering AIX machines.
The paper was for the most part nothing more than a basic “how to secure” an AIX machine. The one thing I would like to see is a document covering the CC/EAL 4+ option for installing AIX. I only had a brief chance to “play” with a machine installed in this fashion.
The paper mentions in serveral place being able to boot knoppix as a security risk. I think this would make a great recovery tool. Does anyone know where I can download knoppix for AIX/RS/6000?
The paper had an intended audience of general AIX admins. In my little experience within AIX, I have found that very few of the AIX admins I work with know or deal with AIX security. I agree with you, it is a basic guide, but that was its intention.