Re: Compromise of the nobody account?



nmm1@xxxxxxxxxxxxx (Nick Maclaren) writes:


In article <1ibfkqm.w7ucbwfftdzgN%hugo@xxxxxxxxx>,
hugo@xxxxxxxxx (Hugo Villeneuve) writes:
|> Unruh <unruh-spam@xxxxxxxxxxxxxx> wrote:
|>
|> > Actually there is no way to shell to it at all. Even su as root will then
|> > run the shell, /bin/true or /bin/false
|>
|> My "su" has a "-m" option that allow root to change to an account with
|> an invalid (or exit immediatly) shell.

One can argue for hours about whether it should do nothing (/bin/true),
flag failure (/bin/false), be non-executable (/dev/null), not exist
or execute "kill -9 0". All have their points.

Has anyone ever suggested the last options?



Regards,
Nick Maclaren.
.



Relevant Pages

  • Re: hi all..
    ... and someone gets access your shell account, ... Only root can install an su binary. ... Of course, if I have sudo ...
    (Fedora)
  • Re: Kmail offline
    ... GUI sessions as root? ... I will not help you with problems running GUI as root. ... That was a straight copy paste from the shell it ran from. ... checking I could get it to do said the install was all right. ...
    (Fedora)
  • Re: csh as default root Shell
    ... Another source is the the FreeBSD Handbook that is available ... As for changing the root shell, it is probably not a good idea. ... Put the new root account you created farther down in the passwd file ...
    (freebsd-questions)
  • Re: "No Shell"
    ... There is simply no need to login as root - ever, ... > you don't have to guard(and spread) root's password anymore. ... And change the shell or whatever it s/he just well damn ... Other than that nothing else should depend on root shell, ...
    (comp.unix.admin)
  • Re: Newbie Questions Regarding <SU> Command & Running Periodic Updating
    ... the log in level and root level. ... The first time you suyou become root, but your shell ... the shell environment is left the same except ... sucommand is aliased to add in some other options, ...
    (freebsd-questions)