[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Limiting admin privileges



On Thu, Dec 13, 2001 at 04:13:56PM +0000, Mark Cooke wrote (1.00):
> If I think this is what you want then all you would be is on the server that is exporting the 
> NFS shares, 
> remove 'no_root_squash' from the /etc/exports file on the shares you want to export

This doesn't actually gain you anything.  All the user has to do know is
create a user on their box with the UID of the person that they want to
screw around with, and then access the NFS shares as that user instead
of root.

Once you run NFS, you're accepting that everyone who can get to your NFS
server is trusted, and there's really no way to make them untrusted.

M



Reply to: