security of Interactive powerdown login

Eric Gisin eric at mks.com
Sat Nov 10 08:25:10 AEST 1990


Having no password on the "powerdown" userid in Interactive UNIX
is a major but non-obvious security risk. Make sure it has the root password.

If you want a more secure password-less powerdown userid
and you have Interactive 2.2, you can change the shell for powerdown
to /usr/admin/powerdown and add the following lines to the top of
the /usr/admin/powerdown shell script:
	#! /bin/sh
	PATH=/bin:/usr/bin:/usr/lbin export PATH



More information about the Comp.unix.sysv386 mailing list