Re: pam_wheel: su to non-root vs. su to root

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Sun, 2002-10-13 at 15:59, KhoGuan PhuaN wrote:
> 
> The security policy enforced by pam_wheel.so module is to grant
> privilege of su'ing to `both root and non-root' only to people
> in a privileged group(default wheel group, if not found, group with 
> gid=0). I think it's overkilling. The reasoning is as follows:
> 
> 1. It should do just what it claims to do: "only permit root
>     authentication to members of wheel group", but no more. That is,
>     leave non-root authentication alone.

> Should I file a `bug' report? Or do I over-sympathize with the dummy
> users who are always messing things up. Any suggestion and correction 
> would be highly appreciated.

As a general rule, if the documentation and the actual behaviour don't
match, file a bug report requesting that either the documentation or the
behaviour be changed. It's a bug, the question is whether it's a docs
bug or a code bug.



Jenn V.
-- 
    "Do you ever wonder if there's a whole section of geek culture 
        	you miss out on by being a geek?" - Dancer.

jenn@anthill.echidna.id.au     http://anthill.echidna.id.au/~jenn/




_______________________________________________

Pam-list@redhat.com
https://listman.redhat.com/mailman/listinfo/pam-list

[Index of Archives]     [Fedora Users]     [Kernel]     [Red Hat Install]     [Linux for the blind]     [Gimp]

  Powered by Linux