Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 28 Sep 2021 08:56:26 -0700 (PDT)
From:      "Rodney W. Grimes" <freebsd-rwg@gndrsh.dnsmgr.net>
To:        tech-lists <tech-lists@zyxst.net>
Cc:        freebsd-arch@FreeBSD.org
Subject:   Re: [HEADSUP] making /bin/sh the default shell for root
Message-ID:  <202109281556.18SFuQ10075767@gndrsh.dnsmgr.net>
In-Reply-To: <YVMliRwn9PZdrfB1@ceres.zyxst.net>

index | next in thread | previous in thread | raw e-mail

> Hi,
> 
> On Wed, Sep 22, 2021 at 11:42:22AM -0400, Shawn Webb wrote:
> >
> >HardenedBSD recently removed toor. No one has complained (yet?). A
> >small Twitter poll[0] showed that 85% of people who responded do not
> >use toor.
> 
> I think that before removing functionality you need to examine the issue
> for conformation bias. I bet that many who answered your question were
> unaware of toor and of those even aware, it's not like there are loads
> of examples in documentation discussing the versatility of root+toor
> over just root. I'd vote to retain toor unless there were compelling
> reasons not to. And even if there were reasons, I'd vote to
> disable-by-default before removing it completely.

I agree with the statements above, just wanted to add a detail
that the toor account is disabled from login by default as it
has a password value of *.

As far as I am aware the only default way to the toor acount is
via su(8).

> -- 
> J.

-- 
Rod Grimes                                                 rgrimes@freebsd.org


help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?202109281556.18SFuQ10075767>