[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Install Report II (The Revenge; bf 3.0.7 (beta); Acer Laptop; floppy/basedebs)



Joey Hess <joeyh@debian.org> writes:

> Anthony Towns wrote:
> > Enabled md5 passwords and shadow passwords. Tried leaving the root
> > password blank, wasn't allowed to.
> 
> Not in MY base-config you won't, buddy. :-P

This is a poor policy.  With about two seconds of work, I can think of
an environment in which you *don't* want a root password.  I'm sure
you can too.  Please don't assume that you already know exactly how
and where the system is going to be used when designing security
features; always make it possible for them to be turned off.

Thomas



Reply to: