Re: states: family, personal (aka mono-user)
Zackary Deems <zdeems-tClYnr7/[email protected]>
| Newsgroups | gmane.linux.arklinux.devel |
|---|---|
| Message-ID | <[email protected]> |
Rescue mode .. or whatever it ends up called.. has been necessary for a while, but we've sidestepped it.. As for the arklinux user being a security risk.. it's not any more of a security risk than giving access to somebody who knows what single-user mode is. The only way you can login without a password is if you're physically at the console. If they're physically at the console, they can just as easily reboot the machine and start it in single user mode and change whatever password they want. If having the arklinux user be able to do this from a local console were a security risk, we wouldn't be doing it now. Now.. to temper that.. I *DO* think that what your saying makes PERFECT sense for an enterprise desktop, because they will have administrators who can fix the machine when they break it.. something home users will not have. For our normal-everyday 'free' 'Ark Linux Home' edition, I think it would be a bad idea to do away with this console login capability. For a future 'Business' or 'Enterprise' version, or a 'voluntary add-on enhancement' package, it would make sense to disable this. Again, this is just my opinion. I may be in the minority here. Pupeno wrote: >-----BEGIN PGP SIGNED MESSAGE----- >Hash: SHA1 > >On Tuesday 27 January 2004 12:15, Zackary Deems wrote: > > >>Simple fact of the matter is, 100% of first time linux users will not >>know about console mode. Another simple fact.. supporting these guys >>WHEN they break their system by switching to family mode without adding >>any users or changing passwords, is a serious multi-hour pain in the >>ass. If you're adamant about changing this setting, we need to get >>together as a group and talk about it, because this is going to have >>support ramifications. >> >> >I have been giving some thought to it and there are various poitns. >1) It won't allow you to remain in Family mode if there are no users (or at >least, it will warn the user a lot). >2) Even if there are users, it'll warn the user when going to family mode. >3) If we only make security on X, we are going to end like windows, instead of >controlling who has access to something, we control which programs someone >can run... leaving the console (and other things) open would make the totall >thing kinda pointless even when most of users doesn't know about the console. >4) I was thinking about a rescue mode that can be run from the grub or >something like that, like Window's failsafe, what do you think ? >Thanks. >- -- >Pupeno: [email protected] >http://www.pupeno.com >-----BEGIN PGP SIGNATURE----- >Version: GnuPG v1.2.3 (GNU/Linux) > >iD8DBQFAFqVutCepaMf3unIRAipVAJ4pF4kO0J7zURUp/uKiZTuYSdshWgCfZ6ma >Lbpwippd/YSFEzJpvU4rMeU= >=wCR5 >-----END PGP SIGNATURE----- > > > > >