[Gllug] tips and tricks...

tet at accucard.com tet at accucard.com
Fri Feb 8 11:10:06 UTC 2002


>Bingo, instant root prompt.
>
>(Of course you need physical access for this so it is not a security
>hole; someone with such access can already do anything.)

You don't need physical access if you have serial console...

Even physical access can be made secure enough for most purposes. You
can change the boot order so it boots directly from the hard disk, add
BIOS and LILO passwords, and you're well on your way to a system for
which people have to physically remove the hard drive to get access.

In a typical office environment, that's not an easy thing to do
unnoticed, so you're secure enough. Not completely secure, true, but
you'll never keep a determined intruder out, and this will keep out
pretty much everyone else.

Tet

-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list