[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: to allow root logins or not?



On Fri, Apr 20, 2007 at 03:53:50PM -0500, Default User wrote:
> Gee, I hate to ask another question, but - 
> 
> During an Etch install, it asks if I want to allow root logins.  If not,
> no root account is set up (I guess as a security measure), and all admin
> access is done by sudo.  Now I normally do almost all admin work as
> sudo, but is there a downside to not having an actual root account.

It is possible to break sudo and if that happens it is handy to be
able to log in without having to reboot.  One of my customers did
this recently by issuing a

$ sudo chmod -R 770 /var

when they meant to be doing it on /var/www.  sudo won't run when one
of its directories below /var has insecure permissions.

As this was an ubuntu install with no root access they had to reboot to fix it.

I use sudo all the time but like to have a root account with a
secure password just in case of mishaps.

Cheers,
Andy

-- 
http://bitfolk.com/ -- No-nonsense VPS hosting
Encrypted mail welcome - keyid 0x604DE5DB

Attachment: signature.asc
Description: Digital signature


Reply to: