Date: Sun, 1 Mar 2009 11:47:44 -0500 From: Glen Barber <glen.j.barber@gmail.com> To: Daniel Lannstrom <op@trekdanne.se> Cc: freebsd-questions@freebsd.org Subject: Re: Root shell Message-ID: <4ad871310903010847w7542b038w6f7787bb231d0bef@mail.gmail.com> In-Reply-To: <20090301164355.GA29675@haruhi> References: <d2f26f270903010650h243df36bx2ea07d434567633e@mail.gmail.com> <20090301155532.GA29514@haruhi> <4ad871310903010811o47b77f04y7976819e101b881b@mail.gmail.com> <20090301164355.GA29675@haruhi>
next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Mar 1, 2009 at 11:43 AM, Daniel Lannstrom <op@trekdanne.se> wrote: > On Sun, Mar 01, 2009 at 11:11:56AM -0500, Glen Barber wrote: >> This explains one of the reasons not to change root's shell: >> >> http://www.freebsd.org/doc/en/books/faq/security.html#TOOR-ACCOUNT > > Yes that's exactly what I meant. Is there any other reason except for > that? As I see it that problem can easily be solved by copying bash to > the root file system. Also many systems today have the root and /usr > on the same file system. You'd have to also copy more than just the binary file. It's more complex than that, and generally is a Bad Idea(tm). -- Glen Barber
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4ad871310903010847w7542b038w6f7787bb231d0bef>