Re: [Security-Discuss] 2006 su problem
Erwann Robin <erobin-4qZELD6FgxhWk0Htik3J/[email protected]> Mon, 17 Oct 2005 19:47:01 +0200
| Newsgroups | gmane.linux.mandrake.security.general |
|---|---|
| Message-ID | <[email protected]> |
look at /etc/pam.d/su. you will find a line : auth sufficient pam_succeed_if.so use_uid user ingroup wheel it was commented in the previous version but has been activated in the 2006 LE2005 version : # Uncomment the following line to implicitly trust users in the "wheel" group. #auth sufficient pam_wheel.so trust use_uid Cheers Erwann Le lundi 17 octobre 2005 à 18:27 +0100, Anne Wilson a écrit : > On Monday 17 Oct 2005 17:02, Mark Watts wrote: > > > I have upgraded the laptop from club 2005LE to 2006, and I find > > > that I can su, or open a root console, without giving the root > > > password. What went wrong, and what can I do about it? > > > > > > Anne > > > > Daft question, but you're not logged in as root are you? > > Never too daft to ask, but no, I'm not. > > > Also, does root actually have a password hash in /etc/shadow? > > > Yes. > > Anne -- Erwann Robin Mandriva http://www.mandriva.com
message.footer
(text/plain, 232 B)
____________________________________________________ Want to buy your Pack or Services from Mandriva? Go to http://store.mandriva.com Join the Club : http://www.mandrivaclub.com ____________________________________________________