From owner-freebsd-chat@FreeBSD.ORG Wed Apr 2 15:01:56 2003 Return-Path: Delivered-To: freebsd-chat@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 2EA0A37B401 for ; Wed, 2 Apr 2003 15:01:56 -0800 (PST) Received: from peitho.fxp.org (peitho.fxp.org [209.26.95.40]) by mx1.FreeBSD.org (Postfix) with ESMTP id 584C343FA3 for ; Wed, 2 Apr 2003 15:01:55 -0800 (PST) (envelope-from bulldog@fxp.org) Received: by peitho.fxp.org (Postfix, from userid 1206) id DA0B5137AC; Wed, 2 Apr 2003 18:01:54 -0500 (EST) Date: Wed, 2 Apr 2003 18:01:54 -0500 From: Bob Bomar To: Fabio Miranda Hamburger Message-ID: <20030402230154.GA23852@peitho.fxp.org> References: Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="CE+1k2dSO48ffgeK" Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.4i X-Mailer: socket() cc: chat@freebsd.org Subject: Re: Offtopic X-BeenThere: freebsd-chat@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Non technical items related to the community List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 02 Apr 2003 23:01:56 -0000 --CE+1k2dSO48ffgeK Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Mar 18, 2003 at 01:20:27PM -0600, Fabio Miranda Hamburger wrote: > Hi, I have a couple of question: >=20 > 1. A technique for an intruder to keep a root account was creating a stuid > root shell, that is not possible on FreeBSD nowadays, Why is not possible? > How a program like sudo can do that? Foe example, If i am a sudo 'full > admin' I can do this without passwd: > %sudo su > # sudo executes the command as root, and since the systems sees su being executed as root, you wont need that password. --=20 /----------------------------------------------------------------\ | Bob Bomar bulldog@fxp.org http://www.bomar.us/~bob | |=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D= =3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D=3D| | FreeBSD: The Power to Serve. http://www.freeBSD.org | \----------------------------------------------------------------/ --CE+1k2dSO48ffgeK Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.0 (FreeBSD) iD8DBQE+i2vi9Jm/aTrtdKoRAldTAJ4xKqEwFNzqZwmhIVa+YJwM0SBNcACfX7jR BPJxdwJlbNdujbw1ZC+0nWQ= =PEzc -----END PGP SIGNATURE----- --CE+1k2dSO48ffgeK--