[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kde-usability
Subject:    Re: Security concern in option
From:       Art Carney <greencarrots () nospammail ! net>
Date:       2004-07-11 3:45:41
Message-ID: 200407102245.42100.greencarrots () nospammail ! net
[Download RAW message or body]

On July 10, 2004 05:36 pm, Henrique Pinto wrote:
> Em Sáb 10 Jul 2004 17:00, Frans Englich escreveu:
> > That option affects kdesu, which invokes su. How does the wheel group
> > relate to this?
>
> On some systems, only users in the wheel group can use "su".
>
> BTW, the "feature" is a security risk, and should definitely be removed.
> Imagine, for example, that a user is logged in KDE, and the computer stars
> showing an unusual behaviour. Then the admin is called, and he opens
> something requiring root privileges. Root access would them be available
> without the admin knowing about it. (Of course, in theory, no admin should
> do this, but life does not follow theory...)


How about if someone is invoking kdesu, there should be an option that enables 
root to tell KDE not to remember the password? I don't think we should take 
out something that is useful for people, esp. if they're the only user of 
their computers.
_______________________________________________
kde-usability mailing list
kde-usability@kde.org
https://mail.kde.org/mailman/listinfo/kde-usability

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic