[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Running root commands by http



On Thu, 23 Aug 2001 15:21:23 +0100
"Karl E. Jorgensen" <karl@jorgensen.com> wrote:


> Sounds like you're getting into doing "normal" remote admin of a box.
> But why over HTTP ? If you have network connectivity to it, ssh should
> do the job (ssh in as yourself and su/sudo to root?).
> 
> If you can get to via HTTP (e.g. you're behind some company firewall?),
> then httptunnel might help. YMMV. But if you can get SSH over HTTP
> running, you should be able to use all the existing tools. Better than
> writing new tools from scratch...
> 

Of course I prefer ssh!!!!!!! But that's not for me...



> Failing everything else, you *could* use the email method. I guess that
> some (big?) procmail recipe should be able to call a script that:
>     - de-crypts the mail and verifies that it is *your* signature (you
>       weren't going to do things in plaintext, where you?)
>     - executes any command
>     - sends stdout/stderr back (encrypted again of course).
> But doing this for interactive commands would be .... difficult...
> 
> <tangent>TCP/IP over email anyone?</tangent>

Yes, that's not easy, but as it's on the same machine, maybe is it not really necessary to encrypt as theoriticaly there's no people connecting to this computer.

To be more explicit, it's on a mail relay in a dmz witch need to become if there's a very big problem on the internal mail server, THE smtp/pop server for this domain, for a few mails accounts.
So the admin need to be able to create some accounts, delete them, and switch between to configs of postfix.

That's all....


-- 
Easter-eggs                                Spécialiste GNU/Linux
44-46 rue de l'Ouest  -  75014 Paris   -   France -  Métro Gaité
Phone: +33 (0) 1 43 35 00 37    -     Fax: +33 (0) 1 41 35 00 76
mailto:elacour@easter-eggs.com   -    http://www.easter-eggs.com

Attachment: pgp8D301_MNb0.pgp
Description: PGP signature


Reply to: