From owner-freebsd-security@FreeBSD.ORG Mon Jun 18 17:33:20 2012 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 75F55106566B for ; Mon, 18 Jun 2012 17:33:20 +0000 (UTC) (envelope-from jhs@berklix.com) Received: from tower.berklix.org (tower.berklix.org [83.236.223.114]) by mx1.freebsd.org (Postfix) with ESMTP id F032B8FC21 for ; Mon, 18 Jun 2012 17:33:19 +0000 (UTC) Received: from mart.js.berklix.net (p5DCBD5E0.dip.t-dialin.net [93.203.213.224]) (authenticated bits=0) by tower.berklix.org (8.14.2/8.14.2) with ESMTP id q5IHX5ZH087680; Mon, 18 Jun 2012 17:33:05 GMT (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (fire.js.berklix.net [192.168.91.41]) by mart.js.berklix.net (8.14.3/8.14.3) with ESMTP id q5IHWqK2085761; Mon, 18 Jun 2012 19:32:54 +0200 (CEST) (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (localhost [127.0.0.1]) by fire.js.berklix.net (8.14.4/8.14.4) with ESMTP id q5IHWXU1090894; Mon, 18 Jun 2012 19:32:40 +0200 (CEST) (envelope-from jhs@fire.js.berklix.net) Message-Id: <201206181732.q5IHWXU1090894@fire.js.berklix.net> To: Jason Hellenthal From: "Julian H. Stacey" Organization: http://berklix.com BSD Unix Linux Consultancy, Munich Germany User-agent: EXMH on FreeBSD http://berklix.com/free/ X-URL: http://www.berklix.com In-reply-to: Your message "Mon, 18 Jun 2012 10:42:59 EDT." <20120618144259.GB74775@DataIX.net> Date: Mon, 18 Jun 2012 19:32:32 +0200 Sender: jhs@berklix.com Cc: freebsd-security@freebsd.org, Budnev Vladimir Subject: Re: (Free 7.2) "su -l" didnt prompt password.Is it possbile? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 18 Jun 2012 17:33:20 -0000 > The only thing I can think of ATM is .. did you recently perform and > upgrade from source with this system ? mergemaster ? Most mis dials on the phone network used to be proven to be human not machine, despite people said they were careful & had not made mistakes. Never underestimate human error. I've know test hosts that were off line & someone zeroed out the root pwd while sys was under debug/repair, to save a visiting expert needing a tmp root pwd. (A bad habit, but its's been known). Then some time later one discovers it is Still zeroed out ;-) ... To err is human, to BSD is divine ;-) Cheers, Julian -- Julian Stacey, BSD Unix Linux C Sys Eng Consultants Munich http://berklix.com Reply below not above, cumulative like a play script, & indent with "> ". Format: Plain text. Not HTML, multipart/alternative, base64, quoted-printable. Mail from @yahoo dumped @berklix. http://berklix.org/yahoo/