Security basics



I have sure heard a LOT about security updates and I have had my own problems. For years I thought the only thing necessary was a good root password. This year I found out with ssh around you need a good password for your own login name. My problem was caused by having a super poor login password which was my last name. Since the login name was karl it followed.

Fixed that problem with a real hard password for karl and root has a changable hard password. In my olden working days we had safes for State Secrets and they had what were called "one hour" locks and 30 minute burn protection. We changed the combination every 6 months. Drove me bats!

So the question is this: If I have passwords that are safe for an hour, is not my computer safe from tampering? I guess the Internet could send you a file that works to discover passwords and then emails them to the sender? But this is hard to do.



--

Karl F. Larsen, AKA K5DI
Linux User
#450462 http://counter.li.org.

--
fedora-list mailing list
fedora-list@xxxxxxxxxx
To unsubscribe: https://www.redhat.com/mailman/listinfo/fedora-list



Relevant Pages

  • Re: Security basics
    ... For years I thought the only thing necessary was a good root ... login password which was my last name. ... changable hard password. ... is not my computer safe from tampering? ...
    (Fedora)
  • Re: Security basics
    ... For years I thought the only thing necessary was a good root password. ... Since the login name was karl it followed. ... Fixed that problem with a real hard password for karl and root has a changable hard password. ... If I have passwords that are safe for an hour, is not my computer safe from tampering? ...
    (Fedora)
  • Re: [RFC][PATCH 0/9] Network receive deadlock prevention for NBD
    ... in order to make remote storage on a lan work properly. ... then gradually widen the scope of what is safe. ... Just for clarification - it will be completely impossible to login using ... infrequent albeit critical for machine recovery. ...
    (Linux-Kernel)
  • Re: [opensuse] Security
    ... than 5 login with wrong password the system erase all home of this user ... However it's an evidence that if a people is rejected for wrong pass, he didn't enter the system and so the data was safe. ... but I was said that the best place for sensitive data is on non connected/wired computer, ...
    (SuSE)
  • Re: root cannot login tho sudo user can
    ... >> running but the upshot is that I can't login as root. ... The secure log wasn't any help either though ... >> Karl L ... > If it's a passwd issue, try sudo su and change root's passwd. ...
    (Fedora)