Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 1 Mar 2009 11:47:44 -0500
From:      Glen Barber <glen.j.barber@gmail.com>
To:        Daniel Lannstrom <op@trekdanne.se>
Cc:        freebsd-questions@freebsd.org
Subject:   Re: Root shell
Message-ID:  <4ad871310903010847w7542b038w6f7787bb231d0bef@mail.gmail.com>
In-Reply-To: <20090301164355.GA29675@haruhi>
References:  <d2f26f270903010650h243df36bx2ea07d434567633e@mail.gmail.com> <20090301155532.GA29514@haruhi> <4ad871310903010811o47b77f04y7976819e101b881b@mail.gmail.com> <20090301164355.GA29675@haruhi>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Mar 1, 2009 at 11:43 AM, Daniel Lannstrom <op@trekdanne.se> wrote:
> On Sun, Mar 01, 2009 at 11:11:56AM -0500, Glen Barber wrote:
>> This explains one of the reasons not to change root's shell:
>>
>> http://www.freebsd.org/doc/en/books/faq/security.html#TOOR-ACCOUNT
>
> Yes that's exactly what I meant. Is there any other reason except for
> that? As I see it that problem can easily be solved by copying bash to
> the root file system. Also many systems today have the root and /usr
> on the same file system.

You'd have to also copy more than just the binary file.  It's more
complex than that, and generally is a Bad Idea(tm).

-- 
Glen Barber



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4ad871310903010847w7542b038w6f7787bb231d0bef>