[2121] in RedHat Linux List
Re: Is "linux single" a security concern?
daemon@ATHENA.MIT.EDU (Joachim Paulini)
Thu Oct 31 18:14:45 1996
Date: Fri, 1 Nov 1996 00:10:10 +0100
From: Joachim Paulini <i2041101@ws.rz.tu-bs.de>
To: redhat-list@redhat.com
Reply-To: j.paulini@tu-bs.de
Resent-From: redhat-list@redhat.com
>
> >I booted my box to try out the "linux single" lilo option, and I'm concerned
> >that the resulting unprotected root shell is a fairly serious security
> >concern.
> >
> >Not all machines can be physically secured (e.g. in a large office building,
> >perhaps) and it seems that it would be a trivial way to gain root access to
> >any Linux box.
> >
> Yes this is a security hole but it can be fixed somewhat with a password=
> line in you lilo.conf. which will cause lilo to have a password
>
It is more secure to go into the BIOS settings and require a password
to boot the machine. I guess most BIOS'es can do this. This way no one
can boot other partitions (maybe there is also a DOS partition) or
insert a boot floppy.
--
Joachim Paulini | Institut fuer Theoretische Physik
j.paulini@tu-bs.de | Technische Universitaet Braunschweig
--
PLEASE read the Red Hat FAQ, Tips, Errata and the MAILING LIST ARCHIVES!
________________________________________________________________________
http://www.redhat.com/RedHat-FAQ http://www.redhat.com/RedHat-Errata
http://www.redhat.com/RedHat-Tips http://www.redhat.com/mailing-lists
------------------------------------------------------------------------
To unsubscribe: mail -s unsubscribe redhat-list-request@redhat.com < /dev/null