Is it Allowed to Change Default System Accounts on Solaris?

(Doc ID 1503266.1)

Last updated on JULY 29, 2016

Applies to:

Solaris Operating System - Version 10 3/05 and later
Information in this document applies to any platform.

Goal

The system accounts (bin, sys, adm, lp, nobody, noaccess, nobody4, etc.) have no shell.

Can we assign a shell of /bin/false to these accounts and then lock these accounts in Solaris systems?

Are these roles and if so should we not add /bin/false to them as a shell and lock them?  What are best practices in this regard? 

Solution

Sign In with your My Oracle Support account

Don't have a My Oracle Support account? Click to get started

My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms