Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #229299 > unrolled thread

Emergency mode when root account locked

Started bydeandre <d.gopburn10@gmail.com>
First post2020-12-04 13:20 +0100
Last post2020-12-05 15:10 +0100
Articles 20 on this page of 30 — 15 participants

Back to article view | Back to linux.debian.user


Contents

  Emergency mode when root account locked deandre <d.gopburn10@gmail.com> - 2020-12-04 13:20 +0100
    Re: Emergency mode when root account locked Greg Wooledge <wooledg@eeg.ccf.org> - 2020-12-04 14:20 +0100
      Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-05 11:50 +0100
        Re: Emergency mode when root account locked Greg Wooledge <wooledg@eeg.ccf.org> - 2020-12-07 16:20 +0100
          Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-07 16:40 +0100
            Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-08 10:00 +0100
              Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-08 10:20 +0100
                Re: Emergency mode when root account locked deloptes <deloptes@gmail.com> - 2020-12-08 12:00 +0100
          Re: Emergency mode when root account locked grumpy@mailfence.com - 2020-12-07 16:40 +0100
            Re: Emergency mode when root account locked Celejar <celejar@gmail.com> - 2020-12-09 01:50 +0100
          Re: Emergency mode when root account locked Fabrice BAUZAC <noon@mykolab.com> - 2020-12-12 01:10 +0100
            Re: Emergency mode when root account locked Keith Bainbridge <ke1thozgroups@gmx.com> - 2020-12-12 03:50 +0100
              Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-12 09:40 +0100
                Re: Emergency mode when root account locked Keith Bainbridge <ke1thozgroups@gmx.com> - 2020-12-12 13:00 +0100
                  Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-12 14:10 +0100
                  Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 14:10 +0100
                    Re: Emergency mode when root account locked "Andrew M.A. Cater" <amacater@einval.com> - 2020-12-12 14:20 +0100
                      Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 14:50 +0100
                      Re: Emergency mode when root account locked Kenneth Parker <sea7kenp@gmail.com> - 2020-12-12 17:40 +0100
                        Re: Emergency mode when root account locked "Andrew M.A. Cater" <amacater@einval.com> - 2020-12-12 18:20 +0100
                          Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 18:50 +0100
                  Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-12 20:00 +0100
                    Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 21:20 +0100
            Re: Emergency mode when root account locked Alex Mestiashvili <amestia@rsh2.donotuse.de> - 2020-12-12 15:20 +0100
              Re: Emergency mode when root account locked Marco Möller <talby@debianlists.mobilxpress.net> - 2020-12-12 15:40 +0100
                Re: Emergency mode when root account locked Alex Mestiashvili <amestia@rsh2.donotuse.de> - 2020-12-12 15:50 +0100
              Re: Emergency mode when root account locked deloptes <deloptes@gmail.com> - 2020-12-13 00:50 +0100
          Bug#977358: release-notes: document how to make the rescue mode usable if no root password is set (buster) Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-14 12:20 +0100
            Re: Bug#977358: release-notes: document how to make the rescue mode  usable if no root password is set (buster) nickgeovanis <nickgeovanis@gmail.com> - 2020-12-14 13:40 +0100
    Re: Emergency mode when root account locked Marco Möller <talby@debianlists.mobilxpress.net> - 2020-12-05 15:10 +0100

Page 1 of 2  [1] 2  Next page →


#229299 — Emergency mode when root account locked

Fromdeandre <d.gopburn10@gmail.com>
Date2020-12-04 13:20 +0100
SubjectEmergency mode when root account locked
Message-ID<Biie5-59e-1@gated-at.bofh.it>

[Multipart message — attachments visible in raw view] — view raw

Hi

My problem is when I try to boot up deepin(Debian 10 buster) I get the message “cannot open access to console, the root account is locked See sulogin(8) man for more details” and after I press Enter it continues to give me the same message, at this point I’m not really sure what to do.

Sent from Mail for Windows 10

[toc] | [next] | [standalone]


#229302

FromGreg Wooledge <wooledg@eeg.ccf.org>
Date2020-12-04 14:20 +0100
Message-ID<Bijaa-5HO-7@gated-at.bofh.it>
In reply to#229299
On Fri, Dec 04, 2020 at 12:00:14PM +0000, deandre wrote:
> My problem is when I try to boot up deepin(Debian 10 buster)

Deepin is not Debian.  It's a derivative.  Your problems with Deepin
should be asked on a Deepin support list, because the users there will
have more knowledge about your operating system than we do.

> I get the message “cannot open access to console, the root account is locked
> See sulogin(8) man for more details” and after I press Enter it continues to
> give me the same message, at this point I’m not really sure what to do.

>From the original Subject: header, your question is apparently about
something called "emergency mode".  I am going to **GUESS** (here,
again, we are not Deepin users and we don't know how Deepin works)
that this is single-user mode, a.k.a. "rescue mode" in Debian, accessed
from the GRUB boot loader menu.

I am also going to guess that Deepin, like Ubuntu, defaults to giving
you a user account with sudo access, and no root password.  You can
achieve that in Debian as well, by doing something special during the
installation.  In all cases, it's a stupid idea and you shouldn't do it.

If you want to access single-user mode from GRUB, you need a root
password.  So set one.

You'd do that by booting normally, then running something like
"sudo passwd root" as your sudo-privileged user.

If you *can't* boot normally (hence your attempts to enter single-user
mode), then you'll need to boot from an installation image, or a
rescue image, or something along those lines.  Mount your root partition,
chroot into it, and run "passwd root" to set the root password.

Ask your Deepin mailing list for help doing that if you don't know how.

[toc] | [prev] | [next] | [standalone]


#229347

FromAndrei POPESCU <andreimpopescu@gmail.com>
Date2020-12-05 11:50 +0100
Message-ID<BiDix-2Dx-1@gated-at.bofh.it>
In reply to#229302

[Multipart message — attachments visible in raw view] — view raw

On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote:
> On Fri, Dec 04, 2020 at 12:00:14PM +0000, deandre wrote:
> > My problem is when I try to boot up deepin(Debian 10 buster)
> 
> Deepin is not Debian.  It's a derivative.  Your problems with Deepin
> should be asked on a Deepin support list, because the users there will
> have more knowledge about your operating system than we do.

While your guess is probably right, just for the archives, there is also 
a Deepin Desktop Environment, with several components available already 
in buster and many more to come.

https://salsa.debian.org/pkg-deepin-team
 
> I am also going to guess that Deepin, like Ubuntu, defaults to giving
> you a user account with sudo access, and no root password.  You can
> achieve that in Debian as well, by doing something special during the
> installation.  In all cases, it's a stupid idea and you shouldn't do it.

This is a pretty strong (and harsh!) statement. Care to expand on the 
reasons?

Kind regards,
Andrei
-- 
http://wiki.debian.org/FAQsFromDebianUser

[toc] | [prev] | [next] | [standalone]


#229416

FromGreg Wooledge <wooledg@eeg.ccf.org>
Date2020-12-07 16:20 +0100
Message-ID<BjqsW-1jI-15@gated-at.bofh.it>
In reply to#229347
On Sat, Dec 05, 2020 at 12:41:57PM +0200, Andrei POPESCU wrote:
> On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote:
> > I am also going to guess that Deepin, like Ubuntu, defaults to giving
> > you a user account with sudo access, and no root password.  You can
> > achieve that in Debian as well, by doing something special during the
> > installation.  In all cases, it's a stupid idea and you shouldn't do it.
> 
> This is a pretty strong (and harsh!) statement. Care to expand on the 
> reasons?

It prevents access to single-user mode.  The fact that Debian (and
these others?) still puts a single-user mode entry into the GRUB menu,
knowing that it won't work, is just adding insult to injury.

Even if you plan to use sudo for 99% of your administrative work,
there's still no reason NOT to have a root password, for those emergency
situations where you need one.

Another thing to keep in mind is that you might forget your root
password if you don't use it once in a while.  So, you might try to
remember to use "su" or a console root login from time to time, just
to make sure you remember your root password.

[toc] | [prev] | [next] | [standalone]


#229418

FromTixy <tixy@yxit.co.uk>
Date2020-12-07 16:40 +0100
Message-ID<BjqMh-1ra-3@gated-at.bofh.it>
In reply to#229416
On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote:
[...]
> Another thing to keep in mind is that you might forget your root
> password if you don't use it once in a while.

For machines that are personal, single user machines, it just makes
sense to me to use the same password for root as the user. After all,
the root account isn't really protecting anything additional that the
user cares about.

-- 
Tixy

[toc] | [prev] | [next] | [standalone]


#229450

FromAndrei POPESCU <andreimpopescu@gmail.com>
Date2020-12-08 10:00 +0100
Message-ID<BjH0L-32f-13@gated-at.bofh.it>
In reply to#229418

[Multipart message — attachments visible in raw view] — view raw

On Lu, 07 dec 20, 15:35:16, Tixy wrote:
> On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote:
> [...]
> > Another thing to keep in mind is that you might forget your root
> > password if you don't use it once in a while.
> 
> For machines that are personal, single user machines, it just makes
> sense to me to use the same password for root as the user. After all,
> the root account isn't really protecting anything additional that the
> user cares about.

I'm guessing you are referring to this:

https://xkcd.com/1200/

Kind regards,
Andrei
-- 
http://wiki.debian.org/FAQsFromDebianUser

[toc] | [prev] | [next] | [standalone]


#229451

FromTixy <tixy@yxit.co.uk>
Date2020-12-08 10:20 +0100
Message-ID<BjHk5-3og-1@gated-at.bofh.it>
In reply to#229450
On Tue, 2020-12-08 at 10:53 +0200, Andrei POPESCU wrote:
> On Lu, 07 dec 20, 15:35:16, Tixy wrote:
> > On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote:
> > [...]
> > > Another thing to keep in mind is that you might forget your root
> > > password if you don't use it once in a while.
> > 
> > For machines that are personal, single user machines, it just makes
> > sense to me to use the same password for root as the user. After
> > all,
> > the root account isn't really protecting anything additional that
> > the
> > user cares about.
> 
> I'm guessing you are referring to this:
> 
> https://xkcd.com/1200/

Something like that, except I never use hibernate and my disk is
encrypted, so hopefully if someone steals my computer they don't get
anything but the hardware :-)

Also, so I only have one thing to remember my disk encryption
passphrase is also my user and root account password, and I have system
set to automatically login to my account at boot so just have to enter
the passphrase once.

-- 
Tixy

[toc] | [prev] | [next] | [standalone]


#229459

Fromdeloptes <deloptes@gmail.com>
Date2020-12-08 12:00 +0100
Message-ID<BjIST-4cK-17@gated-at.bofh.it>
In reply to#229451
Tixy wrote:

> I never use hibernate and my disk is
> encrypted

hibernation works with encryption just fine. I have a problem though with
hibernation+NFS

[toc] | [prev] | [next] | [standalone]


#229419

Fromgrumpy@mailfence.com
Date2020-12-07 16:40 +0100
Message-ID<BjqMi-1ra-7@gated-at.bofh.it>
In reply to#229416
On Mon, 7 Dec 2020, Greg Wooledge wrote:

> On Sat, Dec 05, 2020 at 12:41:57PM +0200, Andrei POPESCU wrote:
>> On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote:
>>> I am also going to guess that Deepin, like Ubuntu, defaults to giving
>>> you a user account with sudo access, and no root password.  You can
>>> achieve that in Debian as well, by doing something special during the
>>> installation.  In all cases, it's a stupid idea and you shouldn't do it.
>>
>> This is a pretty strong (and harsh!) statement. Care to expand on the
>> reasons?
>
> It prevents access to single-user mode.  The fact that Debian (and
> these others?) still puts a single-user mode entry into the GRUB menu,
> knowing that it won't work, is just adding insult to injury.
>
> Even if you plan to use sudo for 99% of your administrative work,
> there's still no reason NOT to have a root password, for those emergency
> situations where you need one.
>
> Another thing to keep in mind is that you might forget your root
> password if you don't use it once in a while.  So, you might try to
> remember to use "su" or a console root login from time to time, just
> to make sure you remember your root password.
>

i was a sys admin for hpux and linux systems for 25 years now retired
having a root password is along the same line as backups for your system
you spend time and money and pray you never have to use it
you set a root password and use it from time to time just in case

[toc] | [prev] | [next] | [standalone]


#229505

FromCelejar <celejar@gmail.com>
Date2020-12-09 01:50 +0100
Message-ID<BjVQ5-48C-9@gated-at.bofh.it>
In reply to#229419
On Mon, 7 Dec 2020 09:30:05 -0600 (CST)
grumpy@mailfence.com wrote:

...

> i was a sys admin for hpux and linux systems for 25 years now retired
> having a root password is along the same line as backups for your system
> you spend time and money and pray you never have to use it
> you set a root password and use it from time to time just in case

But the difference is that if you don't have backups and you do need
them, you're in big trouble. If you don't have a root password and you
need it, you can always mount the disk from another operating
environment, such as a live one, and fix things. A hassle, certainly,
but not nearly as catastrophic as not having backups

Celejar

[toc] | [prev] | [next] | [standalone]


#229687

FromFabrice BAUZAC <noon@mykolab.com>
Date2020-12-12 01:10 +0100
Message-ID<Bl0E2-2Z0-7@gated-at.bofh.it>
In reply to#229416
Greg Wooledge <wooledg@eeg.ccf.org> writes:

> Even if you plan to use sudo for 99% of your administrative work,
> there's still no reason NOT to have a root password, for those emergency
> situations where you need one.

I've had the bitter taste of it when I had to salvage a virtual machine
for which I had lost access to my non-root account.  You'd better have
the root password around.

[toc] | [prev] | [next] | [standalone]


#229689

FromKeith Bainbridge <ke1thozgroups@gmx.com>
Date2020-12-12 03:50 +0100
Message-ID<Bl38R-4j0-1@gated-at.bofh.it>
In reply to#229687
On 12/12/20 11:03 am, Fabrice BAUZAC wrote:
> Greg Wooledge <wooledg@eeg.ccf.org> writes:
>
>> Even if you plan to use sudo for 99% of your administrative work,
>> there's still no reason NOT to have a root password, for those emergency
>> situations where you need one.
>
> I've had the bitter taste of it when I had to salvage a virtual machine
> for which I had lost access to my non-root account.  You'd better have
> the root password around.
>

AND run sudo as root, for additional safety

--
Keith Bainbridge

ke1thozgroups@gmx.com

[toc] | [prev] | [next] | [standalone]


#229692

FromAndrei POPESCU <andreimpopescu@gmail.com>
Date2020-12-12 09:40 +0100
Message-ID<Bl8BA-7MS-5@gated-at.bofh.it>
In reply to#229689

[Multipart message — attachments visible in raw view] — view raw

On Sb, 12 dec 20, 13:43:09, Keith Bainbridge wrote:
> On 12/12/20 11:03 am, Fabrice BAUZAC wrote:
> > Greg Wooledge <wooledg@eeg.ccf.org> writes:
> > 
> > > Even if you plan to use sudo for 99% of your administrative work,
> > > there's still no reason NOT to have a root password, for those emergency
> > > situations where you need one.
> > 
> > I've had the bitter taste of it when I had to salvage a virtual machine
> > for which I had lost access to my non-root account.  You'd better have
> > the root password around.
> > 
> 
> AND run sudo as root, for additional safety

Is this supposed to be ironic? I really can't tell.

Kind regards,
Andrei
-- 
http://wiki.debian.org/FAQsFromDebianUser

[toc] | [prev] | [next] | [standalone]


#229695

FromKeith Bainbridge <ke1thozgroups@gmx.com>
Date2020-12-12 13:00 +0100
Message-ID<BlbJ8-19L-3@gated-at.bofh.it>
In reply to#229692
On 12/12/20 7:29 pm, Andrei POPESCU wrote:
>> AND run sudo as root, for additional safety
> Is this supposed to be ironic? I really can't tell.


There was a detailed discussion here about sudo being a security issue
on our systems. It appears to be default in debian 10, so most of us get
it as default. I looked at replacing sudo.

I found an article that explained how to strengthen it by forcing sudo
to require root password.

If somebody breaks in, they now need my root password to execute
commands that require root permissions (except a couple that I have
given nopasswd privilege).

It's pretty simple.  AFTER you have tested your root password

add

Defaults        rootpw

to /etc/sudoers

The result:

keith@asus3 Sat12Dec2020@22:49:38 :~$ sudo nano /etc/sudoers
[sudo] password for root: ***

You'll understand that root password must be working BEFORE you amend
/etc/sudoers


Ironic?




--
Keith Bainbridge

ke1thozgroups@gmx.com

[toc] | [prev] | [next] | [standalone]


#229698

FromTixy <tixy@yxit.co.uk>
Date2020-12-12 14:10 +0100
Message-ID<BlcOS-21p-7@gated-at.bofh.it>
In reply to#229695
On Sat, 2020-12-12 at 22:53 +1100, Keith Bainbridge wrote:
> On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > AND run sudo as root, for additional safety
> > Is this supposed to be ironic? I really can't tell.
> 
> There was a detailed discussion here about sudo being a security issue
> on our systems. It appears to be default in debian 10, so most of us get
> it as default.

The default sudo install only grants privileges to members of the
'sudo' group, and I believe the installer only adds the initial user
account it creates to that group if you don't specify a root password
at install time. After all, you are going to need some way of gaining
root privileges to administer the system :-)

I'm not even sure 'sudo' gets installed as part of the base system, but
I see it is a 'recommends' of task-desktop, so yes a lot of us will
have it installed by default; but normal users won't be able to use it
until the system administrator changes the config. (Unless some other
Debian package override sudo config??)

I have recommends packages disabled on my system so don't have sudo, so
I just installed it to verify how it behaves. After asking me for my
password it says:

  tixy is not in the sudoers file.  This incident will be reported.

and sure enough, my 'root' inbox has an email warning me about the
command I was trying to execute.

-- 
Tixy

[toc] | [prev] | [next] | [standalone]


#229699

FromBrian <ad44@cityscape.co.uk>
Date2020-12-12 14:10 +0100
Message-ID<BlcOS-21p-17@gated-at.bofh.it>
In reply to#229695
On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote:

> On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > AND run sudo as root, for additional safety
> > Is this supposed to be ironic? I really can't tell.
> 
> 
> There was a detailed discussion here about sudo being a security issue
> on our systems. It appears to be default in debian 10, so most of us get
> it as default. I looked at replacing sudo.

sudo is set up by default by the installer? You're sure?

-- 
Brian. 

[toc] | [prev] | [next] | [standalone]


#229700

From"Andrew M.A. Cater" <amacater@einval.com>
Date2020-12-12 14:20 +0100
Message-ID<BlcYx-24z-1@gated-at.bofh.it>
In reply to#229699
On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote:
> On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote:
> 
> > On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > > AND run sudo as root, for additional safety
> > > Is this supposed to be ironic? I really can't tell.
> > 
> > 
> > There was a detailed discussion here about sudo being a security issue
> > on our systems. It appears to be default in debian 10, so most of us get
> > it as default. I looked at replacing sudo.
> 
> sudo is set up by default by the installer? You're sure?
> 
> -- 
> Brian. 
> 
There is a question as to whether you want to set up a root account, I think.
If you choose not to, then you get a normal user account.

If you choose to set up a root user:
If you do _not_ set a root password, then the first user you set up is set up
with sudo. In Ubuntu, this is the default behaviour, for example.

I'll now need to go and check a standard (as distinct from an expert install) 

All the very best,

Andy C

[toc] | [prev] | [next] | [standalone]


#229701

FromBrian <ad44@cityscape.co.uk>
Date2020-12-12 14:50 +0100
Message-ID<BldrA-2ej-3@gated-at.bofh.it>
In reply to#229700
On Sat 12 Dec 2020 at 13:15:41 +0000, Andrew M.A. Cater wrote:

> On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote:
> > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote:
> >
> > > On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > > > AND run sudo as root, for additional safety
> > > > Is this supposed to be ironic? I really can't tell.
> > >
> > >
> > > There was a detailed discussion here about sudo being a security issue
> > > on our systems. It appears to be default in debian 10, so most of us get
> > > it as default. I looked at replacing sudo.
> >
> > sudo is set up by default by the installer? You're sure?
> >
> > --
> > Brian.
> >
> There is a question as to whether you want to set up a root account, I think.
> If you choose not to, then you get a normal user account.
>
> If you choose to set up a root user:
> If you do _not_ set a root password, then the first user you set up is set up
> with sudo. In Ubuntu, this is the default behaviour, for example.

>From user-setup-udeb:

  Template: passwd/root-login
  Type: boolean
  Default: true
  Description: Allow login as root?
   If you choose not to allow root to log in, then a user account will be
   created and given the power to become root using the 'sudo' command.

> I'll now need to go and check a standard (as distinct from an expert install)

Default: true

-- 
Brian.

[toc] | [prev] | [next] | [standalone]


#229708

FromKenneth Parker <sea7kenp@gmail.com>
Date2020-12-12 17:40 +0100
Message-ID<Blg65-3S8-9@gated-at.bofh.it>
In reply to#229700

[Multipart message — attachments visible in raw view] — view raw

On Sat, Dec 12, 2020, 8:16 AM Andrew M.A. Cater <amacater@einval.com> wrote:

> On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote:
> > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote:
> >
> > > On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > > > AND run sudo as root, for additional safety
> > > > Is this supposed to be ironic? I really can't tell.
> > >
> > >
> > > There was a detailed discussion here about sudo being a security issue
> > > on our systems. It appears to be default in debian 10, so most of us
> get
> > > it as default. I looked at replacing sudo.
> >
> > sudo is set up by default by the installer? You're sure?
> >
> > --
> > Brian.
> >
> There is a question as to whether you want to set up a root account, I
> think.
> If you choose not to, then you get a normal user account.
>
> If you choose to set up a root user:
> If you do _not_ set a root password, then the first user you set up is set
> up
> with sudo. In Ubuntu, this is the default behaviour, for example.
>

I use Ubuntu (as well as "pure Debian").  When I install Ubuntu, it does
not even give an  *option*  for a Root Password. The Username that you give
during Install goes into the Sudoers list (but not Users defined later).
Since I have my own method of System Administration, one of the first
things I do, after the first Reboot is "sudo passwd root" and, after
completion, I am a happy camper.

I'll now need to go and check a standard (as distinct from an expert
> install)
>

I am setting up a Virtual Bullseye Cinnamon system later today.  I will,
also use "standard install".  Between us, we should be able to answer
followup questions.

>
> All the very best,
>
> Andy C
>

Thanks!

Kenneth Parker

>

[toc] | [prev] | [next] | [standalone]


#229710

From"Andrew M.A. Cater" <amacater@einval.com>
Date2020-12-12 18:20 +0100
Message-ID<BlgIN-4lJ-1@gated-at.bofh.it>
In reply to#229708
On Sat, Dec 12, 2020 at 11:35:58AM -0500, Kenneth Parker wrote:
> On Sat, Dec 12, 2020, 8:16 AM Andrew M.A. Cater <amacater@einval.com> wrote:
> 
> > On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote:
> > > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote:
> > >
> > > > On 12/12/20 7:29 pm, Andrei POPESCU wrote:
> > > > > > AND run sudo as root, for additional safety
> > > > > Is this supposed to be ironic? I really can't tell.
> > > >
> > > >
> > > > There was a detailed discussion here about sudo being a security issue
> > > > on our systems. It appears to be default in debian 10, so most of us
> > get
> > > > it as default. I looked at replacing sudo.
> > >
> > > sudo is set up by default by the installer? You're sure?
> > >
> > > --
> > > Brian.
> > >
> > There is a question as to whether you want to set up a root account, I
> > think.
> > If you choose not to, then you get a normal user account.
> >
> > If you choose to set up a root user:
> > If you do _not_ set a root password, then the first user you set up is set
> > up
> > with sudo. In Ubuntu, this is the default behaviour, for example.
> >
> 
> I use Ubuntu (as well as "pure Debian").  When I install Ubuntu, it does
> not even give an  *option*  for a Root Password. The Username that you give
> during Install goes into the Sudoers list (but not Users defined later).
> Since I have my own method of System Administration, one of the first
> things I do, after the first Reboot is "sudo passwd root" and, after
> completion, I am a happy camper.
> 
> I'll now need to go and check a standard (as distinct from an expert
> > install)
> >

On a "normal" as opposed to an Advanced/expert install, it prompts you to give a password for a root user.
If you effectively tab through this, not setting a password at all, then you
get a normal user account.

Andy C
> 
> I am setting up a Virtual Bullseye Cinnamon system later today.  I will,
> also use "standard install".  Between us, we should be able to answer
> followup questions.
> 
> >
> > All the very best,
> >
> > Andy C
> >
> 
> Thanks!
> 
> Kenneth Parker
> 
> >

[toc] | [prev] | [next] | [standalone]


Page 1 of 2  [1] 2  Next page →

Back to top | Article view | linux.debian.user


csiph-web