Re: Linux login security approaches

Brandon S. Allbery KF8NH (allbery@kf8nh.apk.net)
Mon, 07 Dec 1998 18:28:42 -0500


In message <19981207144143.A19454@knt.terra.vein.hu>, Lenart Gabor writes:
+-----
| I mentioned that Linux has got a weak point : every user can write a fake
| login program and even the system administrator can think that it's mgetty
| and type the root password :( This kind of Trojan programs can be preceded.
| We should define a key combination which is unmaskable by ANY process, and
+--->8

man setserial
Take a look at the "sak" option.

-- 
brandon s. allbery	[os/2][linux][solaris][japh]	 allbery@kf8nh.apk.net
system administrator	     [WAY too many hats]	   allbery@ece.cmu.edu
carnegie mellon / electrical and computer engineering			 KF8NH
			  Kiss my bits, Billy-boy.

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/