Re: Prevent Linux root password change



On Mon, 15 Jan 2007 09:41:33 -0700, ray wrote:

On Mon, 15 Jan 2007 15:55:07 +0100, Tomislav wrote:

Hello,

looks like physical access to Linux machine ( or UNIX in wider sense )
presents clear danger since simple "chrooting" into operating system
makes changing or blanking root password possible. Few months ago I
obtained Sun Enterprise 3500 server with Solaris on it and I wanted to
see how system on such machine works so I simply booted with Solaris CD
and and just blanked password from /etc/shadow manually. It was so
easy, but in the same time, such easy possibility of access to root
password worries me.

My question is: is there any known method to prevent this on Linux or
any kind of Unix system ?

Physical access to any computer results in total compromise. There is,
for example, a Linux Live CD that will permit you to change the admin
password on an MS machine.

I was gonna' say that but I figured anyone that doesn't know the first
rule of network security (physical access) wouldn't listen anyway.

If someone can unplug and walk away with the machine no other security
measures matter.
.



Relevant Pages

  • Re: (newbie) Question about core linux security
    ... you can gain root access. ... Any time untrusted users have physical access to the hardware ... linux, Windows, some big mainframe or whatever. ...
    (comp.os.linux.security)
  • Re: Forgotten SUSE Linux root Password
    ... >> When you have physical access to the system, ... >> for over fourteen years in Linux, and maybe thirty years in UNIX. ... > getting the passwd command to change /etc/passwd, ... it's trivial to become root. ...
    (comp.security.misc)
  • Re: Prevent Linux root password change
    ... looks like physical access to Linux machine (or UNIX in wider sense) ... makes changing or blanking root password possible. ... Physical access to any computer results in total compromise. ...
    (alt.linux)
  • Re: Emergency! please help with file system access issue
    ... Obviously I have full physical access to this ... My friend was a security expert so I am sure ... My first thought when I read this posting was, ... access to another Linux system where you do have root access. ...
    (comp.os.linux.security)
  • Prevent Linux root password change
    ... looks like physical access to Linux machine ... such easy possibility of access to root password worries me. ... is there any known method to prevent this on Linux or any kind of Unix system? ...
    (alt.linux)