confused for booting security



hi,

As someone earlier let me know about the encrypting of passwords, I did the
following:

after becoming the root, used the command:

md5crypt

to get the encrypted string of passwords for using in /boot/grub/grub.conf
This is the password which is NOT the password of the user who logs-in. But
while rebooting, while entering this password (when prompted in the black
screen), if I press Ecs, I come to the choices of OS and at that time, if
press 'e', it says me to edit through the grub, but then I press 'd' to
remove the following two lines (which are just below the name of the OS in
the /boot/grub/grub.conf file):-

password --md5 $1$X58Kw/$v71Qlprzt8f4U9uOu46nk0
lock

and after that I press 'b' to boot without entering the encrypted password
during the booting time.

If this is the case, anyone can press 'e' and then remove those two line and
then 'b' to boot without ever entering the encrypted passwords, then what
would be the purpose of encrypting that? It would be okay for trespassers
too!
--

Regards,
Parshwa Murdia
--
users mailing list
users@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe or change subscription options:
https://admin.fedoraproject.org/mailman/listinfo/users
Guidelines: http://fedoraproject.org/wiki/Mailing_list_guidelines


Relevant Pages

  • Re: ssh clarification needed
    ... If someone could boot the machine into single user mode then they could ... root access - hence encrypting the root partition is probably the only way ...
    (Fedora)
  • Re: Ext Drive Encrypted Files Deny Access
    ... You said that the backup CDs were not usable, ... If you believe that C boot is just not going to be possible (it sometimes ... But these are only hopes if the initial profile of the encrypting account ... Microsoft MVP ...
    (microsoft.public.security)
  • Re: Ext Drive Encrypted Files Deny Access
    ... You said that the backup CDs were not usable, ... If you believe that C boot is just not going to be possible (it sometimes ... But these are only hopes if the initial profile of the encrypting account ... Microsoft MVP ...
    (microsoft.public.windowsxp.security_admin)
  • Re: confused for booting security
    ... and after that I press 'b' to boot without entering the encrypted ... then what would be the purpose of encrypting that? ... when there's a password and lock command above ... root ...
    (Fedora)
  • Re: Can I access a decrypted file if I have all the files backed up?
    ... I installed Windows on the new hard drive ... and ran restore to restore my backup. ... old hard drive to boot on the other computer. ... Best practices for the Encrypting File System ...
    (microsoft.public.windowsxp.security_admin)