sux, an enhancer for su

Norman Diamond diamond at jit533.swstokyo.dec.com
Fri Apr 26 12:36:46 AEST 1991


In article <130394 at uunet.UU.NET> kyle at uunet.uu.net (Kyle Jones) writes:
>Tom Christiansen writes:
> > And this is a feature???  If there are users who can become root
> > without a password, then it's MUCH easier to subvert the
> > system.
>
>I think we're talking around each other.  Most people understand
>the decrease in security.  What you gain is ease of use and safety.

Yeah OK.  Then users in group "wheel" should also be allowed to use
the "passwd" command to set their new passwords without first typing
their old ones.  After all, they can get there via "sux".  Only
mortal users should have their legitimacy verified.
( :-S sarcasm)
--
Norman Diamond       diamond at tkov50.enet.dec.com
If this were the company's opinion, I wouldn't be allowed to post it.



More information about the Alt.sources.d mailing list