Re: [Security-Discuss] 2006 su problem

Erwann Robin <erobin-4qZELD6FgxhWk0Htik3J/[email protected]> Mon, 17 Oct 2005 19:47:01 +0200
Newsgroups gmane.linux.mandrake.security.general
Message-ID <[email protected]>
look at /etc/pam.d/su. 
you will find a line : 
auth       sufficient   pam_succeed_if.so use_uid user ingroup wheel

it was commented in the previous version but has been activated in the
2006
LE2005 version : 
# Uncomment the following line to implicitly trust users in the "wheel"
group.
#auth       sufficient   pam_wheel.so trust use_uid

Cheers
Erwann

Le lundi 17 octobre 2005 à 18:27 +0100, Anne Wilson a écrit :
> On Monday 17 Oct 2005 17:02, Mark Watts wrote:
> > > I have upgraded the laptop from club 2005LE to 2006, and I find
> > > that I can su, or open a root console, without giving the root
> > > password.  What went wrong, and what can I do about it?
> > >
> > > Anne
> >
> > Daft question, but you're not logged in as root are you?
> 
> Never too daft to ask, but no, I'm not.
> 
> > Also, does root actually have a password hash in /etc/shadow?
> >
> Yes.
> 
> Anne
-- 
Erwann Robin

Mandriva                http://www.mandriva.com
message.footer (text/plain, 232 B)
____________________________________________________
Want to buy your Pack or Services from Mandriva? 
Go to http://store.mandriva.com
Join the Club : http://www.mandrivaclub.com
____________________________________________________