Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Who should have the server passwords

Status
Not open for further replies.

upinflamezzz

IS-IT--Management
Oct 10, 2011
178
US
I'm the IT Administrator and one of our servers is a Linux server that runs the software the my company runs on. This server is a managed server by the company that supports the software. I had to sign an agreement that stated they aren't liable if someone from my company goes into the server and messes something up. We're having problem with some processes freezing up that I kill when this happens. One of the owners knows the password as well. My new Operations Manager is asking for the password and procedure to kill these processes if I or the owner is not available. I told him to call the company that supports the server and software if this should happen. Am I in the right for refusing to give him the password and procedure? I've been in IT for quite a while and I've never had anyone in Operations ask me for passwords to servers.
 
Better safe than sorry when it comes to passwords.


James P. Cottingham
I'm number 1,229!
I'm number 1,229!
 
Does an Operations Manager even outrank a System Administrator? I looked on Glassdoor and the salary for an Operations Manager is lower than a System Administrator.
 
Hi

I do not see how this is an IoT issue, so will answer from the Linux point of view.

If killing the runaway process can be automated, then write a script to do it. Add the killer script to the /etc/shells file. Create a new user and in the /etc/passwd file configure the killer script as the user's default shell. Then on every login attempt as the given user, the runaway processes will be killed. As no actual shell access will be granted, you can give that user's password to the Operation Manager too.

Otherwise I agree, you better refuse such password requests.


Feherke.
feherke.github.io
 
You should certainly ask for that request to come from who ever it is in the organisation that you report to.

form ther in in I bow to Feherke , in his sugestion that you create a dedicated user for this ops manager & ensure that his permissions are such that it is only the restart scriot that they can run.
wether this is automatic when they log in or a 2 stage process to minimise any accidental restarts is something you needd to asssess for yorself



Do things on the cheap & it will cost you dear

Avaya Remote Support Engineer (A.R.S.E)
 
This is a political question, not a technical question. [bigsmile]

I like feherke's solution, but IPGuru is right on the money too. If you do come up with a solution to kill a rogue process, then you should also get buy in from both your management, AND the vendor so you don't invalidate your support contract. Especially if this is a mission critical, or business critical app.

In general you should never give out passwords to anyone not directly involved with supporting the application. The management person you give a password to may have different standards than you, as to who might need to know the password.
 
Why would you ask that question here?

I would not.

Regards

Griff
Keep [Smile]ing

There are 10 kinds of people in the world, those who understand binary and those who don't.

I'm trying to cut down on the use of shrieks (exclamation marks), I'm told they are !good for you.
 
Are you triggered? Do you need a safe space to run to?
 
Probably

Regards

Griff
Keep [Smile]ing

There are 10 kinds of people in the world, those who understand binary and those who don't.

I'm trying to cut down on the use of shrieks (exclamation marks), I'm told they are !good for you.
 
I'm triggered by my alarm clock every morning. It sets the tone for the entire day.

[bigsmile]
 
But you're a programmer. Why not just program yourself to wake up when you need to?
 
He doesn't know the API for that.

Regards

Griff
Keep [Smile]ing

There are 10 kinds of people in the world, those who understand binary and those who don't.

I'm trying to cut down on the use of shrieks (exclamation marks), I'm told they are !good for you.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top