[nzlug] Help: Trouble after LDAP + NSS configuration

Jim Cheetham jim at gonzul.net
Fri Feb 15 10:24:26 NZDT 2008


On Fri, Feb 15, 2008 at 10:02 AM, Toby Collett
<tcollett+lists at plan9.net.nz> wrote:
> surely this adds no security if you can simply change init to bash...

"Correct" insofar as there is no security save disk encryption (and
sometimes not even that) that will keep your system safe from someone
who has physical access to it.

However, requiring a password to access single-user-mode is a
reasonable protection against accidental or inadvertent invocation.
Ubuntu doesn't by default have a password authentication mechanism for
the root user (i.e. it's locked and unset); invoking "recovery mode"
will set up the filesystems and drop you straight to a root prompt.

-jim



More information about the NZLUG mailing list