Re: Rename root

From: Alexander Dalloz (alexander.dalloz_at_uni-bielefeld.de)
Date: 02/06/04

  • Next message: antonio montagnani: "Re: Grub not starting Windows"
    To: fedora-list@redhat.com
    Date: Fri, 06 Feb 2004 22:34:40 +0100
    
    

    Am Fr, den 06.02.2004 schrieb Hakan Kara um 22:22:
    > I thought it would serve to more security in my system...
    > is it not a security problem to know the name of su on a system to get
    > easier into it ?

    There is _no_ security by obscurity!

    It does not matter which name the system's superuser has, if root or
    admin or else, he has UID 0. Anyone with just little skill can very
    quickly find out which users have UID 0.

    Changing root's name to anything else will cause you nothing but big
    pain.

    Alexander

    -- 
    Alexander Dalloz | Enger, Germany | GPG key 1024D/ED695653 1999-07-13
    Fedora GNU/Linux Core 1 (Yarrow) on Athlon CPU kernel 2.4.22-1.2149.nptl
    Sirendipity 22:32:17 up 6 days, 21:32, load average: 0.00, 0.08, 0.07 
                       [ Γνωθι σ'αυτον - gnothi seauton ]
    -- 
    fedora-list mailing list
    fedora-list@redhat.com
    To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list
    

  • Next message: antonio montagnani: "Re: Grub not starting Windows"

    Relevant Pages

    • Re: New Security Features, Please Comment
      ... as I am very new to kernel hacking and would like to solve this ... performance vs security problem once and for all. ... UID remains constant unless you intentionally did a setuidcall. ... precaution, and even if a process manages to get its uid/gid changed, ...
      (Linux-Kernel)
    • Re: [1/1][PATCH] nproc v2: netlink access to /proc information
      ... > access controls myself. ... credentials (beyond the existing uid, cap information), since the LSM ... patches for adding security fields and hooks for managing skb security ... sender pid, uid, and cap, and the security module can look up the pid if ...
      (Linux-Kernel)
    • RE: hfs ishell owner field blank
      ... Your problem is due to you not having a userid in your security database ... assigned with that UID, but that user is no longer in the security ... hfs ishell owner field blank ...
      (bit.listserv.ibm-main)
    • Re: [patch 2/3] MAP_NOZERO - implement sys_brk2()
      ... Start oprofile and run a kernel ... Relying on a uid at this level ... you need to store away arbitrary LSM ... information and call LSM hooks to decide security equivalence. ...
      (Linux-Kernel)
    • Re: Strange command histories in hacked shell history
      ... >security expert so explanations either way would be welcomed. ... effective uid and gid are set to match those of the target user as ... specified in the passwd file and the group vector is initialized based ... on blah blah blah... ...
      (FreeBSD-Security)