Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.debian.user > #229299 > unrolled thread
| Started by | deandre <d.gopburn10@gmail.com> |
|---|---|
| First post | 2020-12-04 13:20 +0100 |
| Last post | 2020-12-05 15:10 +0100 |
| Articles | 20 on this page of 30 — 15 participants |
Back to article view | Back to linux.debian.user
Emergency mode when root account locked deandre <d.gopburn10@gmail.com> - 2020-12-04 13:20 +0100
Re: Emergency mode when root account locked Greg Wooledge <wooledg@eeg.ccf.org> - 2020-12-04 14:20 +0100
Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-05 11:50 +0100
Re: Emergency mode when root account locked Greg Wooledge <wooledg@eeg.ccf.org> - 2020-12-07 16:20 +0100
Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-07 16:40 +0100
Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-08 10:00 +0100
Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-08 10:20 +0100
Re: Emergency mode when root account locked deloptes <deloptes@gmail.com> - 2020-12-08 12:00 +0100
Re: Emergency mode when root account locked grumpy@mailfence.com - 2020-12-07 16:40 +0100
Re: Emergency mode when root account locked Celejar <celejar@gmail.com> - 2020-12-09 01:50 +0100
Re: Emergency mode when root account locked Fabrice BAUZAC <noon@mykolab.com> - 2020-12-12 01:10 +0100
Re: Emergency mode when root account locked Keith Bainbridge <ke1thozgroups@gmx.com> - 2020-12-12 03:50 +0100
Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-12 09:40 +0100
Re: Emergency mode when root account locked Keith Bainbridge <ke1thozgroups@gmx.com> - 2020-12-12 13:00 +0100
Re: Emergency mode when root account locked Tixy <tixy@yxit.co.uk> - 2020-12-12 14:10 +0100
Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 14:10 +0100
Re: Emergency mode when root account locked "Andrew M.A. Cater" <amacater@einval.com> - 2020-12-12 14:20 +0100
Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 14:50 +0100
Re: Emergency mode when root account locked Kenneth Parker <sea7kenp@gmail.com> - 2020-12-12 17:40 +0100
Re: Emergency mode when root account locked "Andrew M.A. Cater" <amacater@einval.com> - 2020-12-12 18:20 +0100
Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 18:50 +0100
Re: Emergency mode when root account locked Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-12 20:00 +0100
Re: Emergency mode when root account locked Brian <ad44@cityscape.co.uk> - 2020-12-12 21:20 +0100
Re: Emergency mode when root account locked Alex Mestiashvili <amestia@rsh2.donotuse.de> - 2020-12-12 15:20 +0100
Re: Emergency mode when root account locked Marco Möller <talby@debianlists.mobilxpress.net> - 2020-12-12 15:40 +0100
Re: Emergency mode when root account locked Alex Mestiashvili <amestia@rsh2.donotuse.de> - 2020-12-12 15:50 +0100
Re: Emergency mode when root account locked deloptes <deloptes@gmail.com> - 2020-12-13 00:50 +0100
Bug#977358: release-notes: document how to make the rescue mode usable if no root password is set (buster) Andrei POPESCU <andreimpopescu@gmail.com> - 2020-12-14 12:20 +0100
Re: Bug#977358: release-notes: document how to make the rescue mode usable if no root password is set (buster) nickgeovanis <nickgeovanis@gmail.com> - 2020-12-14 13:40 +0100
Re: Emergency mode when root account locked Marco Möller <talby@debianlists.mobilxpress.net> - 2020-12-05 15:10 +0100
Page 1 of 2 [1] 2 Next page →
| From | deandre <d.gopburn10@gmail.com> |
|---|---|
| Date | 2020-12-04 13:20 +0100 |
| Subject | Emergency mode when root account locked |
| Message-ID | <Biie5-59e-1@gated-at.bofh.it> |
[Multipart message — attachments visible in raw view] — view raw
Hi My problem is when I try to boot up deepin(Debian 10 buster) I get the message “cannot open access to console, the root account is locked See sulogin(8) man for more details” and after I press Enter it continues to give me the same message, at this point I’m not really sure what to do. Sent from Mail for Windows 10
[toc] | [next] | [standalone]
| From | Greg Wooledge <wooledg@eeg.ccf.org> |
|---|---|
| Date | 2020-12-04 14:20 +0100 |
| Message-ID | <Bijaa-5HO-7@gated-at.bofh.it> |
| In reply to | #229299 |
On Fri, Dec 04, 2020 at 12:00:14PM +0000, deandre wrote: > My problem is when I try to boot up deepin(Debian 10 buster) Deepin is not Debian. It's a derivative. Your problems with Deepin should be asked on a Deepin support list, because the users there will have more knowledge about your operating system than we do. > I get the message “cannot open access to console, the root account is locked > See sulogin(8) man for more details” and after I press Enter it continues to > give me the same message, at this point I’m not really sure what to do. >From the original Subject: header, your question is apparently about something called "emergency mode". I am going to **GUESS** (here, again, we are not Deepin users and we don't know how Deepin works) that this is single-user mode, a.k.a. "rescue mode" in Debian, accessed from the GRUB boot loader menu. I am also going to guess that Deepin, like Ubuntu, defaults to giving you a user account with sudo access, and no root password. You can achieve that in Debian as well, by doing something special during the installation. In all cases, it's a stupid idea and you shouldn't do it. If you want to access single-user mode from GRUB, you need a root password. So set one. You'd do that by booting normally, then running something like "sudo passwd root" as your sudo-privileged user. If you *can't* boot normally (hence your attempts to enter single-user mode), then you'll need to boot from an installation image, or a rescue image, or something along those lines. Mount your root partition, chroot into it, and run "passwd root" to set the root password. Ask your Deepin mailing list for help doing that if you don't know how.
[toc] | [prev] | [next] | [standalone]
| From | Andrei POPESCU <andreimpopescu@gmail.com> |
|---|---|
| Date | 2020-12-05 11:50 +0100 |
| Message-ID | <BiDix-2Dx-1@gated-at.bofh.it> |
| In reply to | #229302 |
[Multipart message — attachments visible in raw view] — view raw
On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote: > On Fri, Dec 04, 2020 at 12:00:14PM +0000, deandre wrote: > > My problem is when I try to boot up deepin(Debian 10 buster) > > Deepin is not Debian. It's a derivative. Your problems with Deepin > should be asked on a Deepin support list, because the users there will > have more knowledge about your operating system than we do. While your guess is probably right, just for the archives, there is also a Deepin Desktop Environment, with several components available already in buster and many more to come. https://salsa.debian.org/pkg-deepin-team > I am also going to guess that Deepin, like Ubuntu, defaults to giving > you a user account with sudo access, and no root password. You can > achieve that in Debian as well, by doing something special during the > installation. In all cases, it's a stupid idea and you shouldn't do it. This is a pretty strong (and harsh!) statement. Care to expand on the reasons? Kind regards, Andrei -- http://wiki.debian.org/FAQsFromDebianUser
[toc] | [prev] | [next] | [standalone]
| From | Greg Wooledge <wooledg@eeg.ccf.org> |
|---|---|
| Date | 2020-12-07 16:20 +0100 |
| Message-ID | <BjqsW-1jI-15@gated-at.bofh.it> |
| In reply to | #229347 |
On Sat, Dec 05, 2020 at 12:41:57PM +0200, Andrei POPESCU wrote: > On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote: > > I am also going to guess that Deepin, like Ubuntu, defaults to giving > > you a user account with sudo access, and no root password. You can > > achieve that in Debian as well, by doing something special during the > > installation. In all cases, it's a stupid idea and you shouldn't do it. > > This is a pretty strong (and harsh!) statement. Care to expand on the > reasons? It prevents access to single-user mode. The fact that Debian (and these others?) still puts a single-user mode entry into the GRUB menu, knowing that it won't work, is just adding insult to injury. Even if you plan to use sudo for 99% of your administrative work, there's still no reason NOT to have a root password, for those emergency situations where you need one. Another thing to keep in mind is that you might forget your root password if you don't use it once in a while. So, you might try to remember to use "su" or a console root login from time to time, just to make sure you remember your root password.
[toc] | [prev] | [next] | [standalone]
| From | Tixy <tixy@yxit.co.uk> |
|---|---|
| Date | 2020-12-07 16:40 +0100 |
| Message-ID | <BjqMh-1ra-3@gated-at.bofh.it> |
| In reply to | #229416 |
On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote: [...] > Another thing to keep in mind is that you might forget your root > password if you don't use it once in a while. For machines that are personal, single user machines, it just makes sense to me to use the same password for root as the user. After all, the root account isn't really protecting anything additional that the user cares about. -- Tixy
[toc] | [prev] | [next] | [standalone]
| From | Andrei POPESCU <andreimpopescu@gmail.com> |
|---|---|
| Date | 2020-12-08 10:00 +0100 |
| Message-ID | <BjH0L-32f-13@gated-at.bofh.it> |
| In reply to | #229418 |
[Multipart message — attachments visible in raw view] — view raw
On Lu, 07 dec 20, 15:35:16, Tixy wrote: > On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote: > [...] > > Another thing to keep in mind is that you might forget your root > > password if you don't use it once in a while. > > For machines that are personal, single user machines, it just makes > sense to me to use the same password for root as the user. After all, > the root account isn't really protecting anything additional that the > user cares about. I'm guessing you are referring to this: https://xkcd.com/1200/ Kind regards, Andrei -- http://wiki.debian.org/FAQsFromDebianUser
[toc] | [prev] | [next] | [standalone]
| From | Tixy <tixy@yxit.co.uk> |
|---|---|
| Date | 2020-12-08 10:20 +0100 |
| Message-ID | <BjHk5-3og-1@gated-at.bofh.it> |
| In reply to | #229450 |
On Tue, 2020-12-08 at 10:53 +0200, Andrei POPESCU wrote: > On Lu, 07 dec 20, 15:35:16, Tixy wrote: > > On Mon, 2020-12-07 at 10:11 -0500, Greg Wooledge wrote: > > [...] > > > Another thing to keep in mind is that you might forget your root > > > password if you don't use it once in a while. > > > > For machines that are personal, single user machines, it just makes > > sense to me to use the same password for root as the user. After > > all, > > the root account isn't really protecting anything additional that > > the > > user cares about. > > I'm guessing you are referring to this: > > https://xkcd.com/1200/ Something like that, except I never use hibernate and my disk is encrypted, so hopefully if someone steals my computer they don't get anything but the hardware :-) Also, so I only have one thing to remember my disk encryption passphrase is also my user and root account password, and I have system set to automatically login to my account at boot so just have to enter the passphrase once. -- Tixy
[toc] | [prev] | [next] | [standalone]
| From | deloptes <deloptes@gmail.com> |
|---|---|
| Date | 2020-12-08 12:00 +0100 |
| Message-ID | <BjIST-4cK-17@gated-at.bofh.it> |
| In reply to | #229451 |
Tixy wrote: > I never use hibernate and my disk is > encrypted hibernation works with encryption just fine. I have a problem though with hibernation+NFS
[toc] | [prev] | [next] | [standalone]
| From | grumpy@mailfence.com |
|---|---|
| Date | 2020-12-07 16:40 +0100 |
| Message-ID | <BjqMi-1ra-7@gated-at.bofh.it> |
| In reply to | #229416 |
On Mon, 7 Dec 2020, Greg Wooledge wrote: > On Sat, Dec 05, 2020 at 12:41:57PM +0200, Andrei POPESCU wrote: >> On Vi, 04 dec 20, 08:09:44, Greg Wooledge wrote: >>> I am also going to guess that Deepin, like Ubuntu, defaults to giving >>> you a user account with sudo access, and no root password. You can >>> achieve that in Debian as well, by doing something special during the >>> installation. In all cases, it's a stupid idea and you shouldn't do it. >> >> This is a pretty strong (and harsh!) statement. Care to expand on the >> reasons? > > It prevents access to single-user mode. The fact that Debian (and > these others?) still puts a single-user mode entry into the GRUB menu, > knowing that it won't work, is just adding insult to injury. > > Even if you plan to use sudo for 99% of your administrative work, > there's still no reason NOT to have a root password, for those emergency > situations where you need one. > > Another thing to keep in mind is that you might forget your root > password if you don't use it once in a while. So, you might try to > remember to use "su" or a console root login from time to time, just > to make sure you remember your root password. > i was a sys admin for hpux and linux systems for 25 years now retired having a root password is along the same line as backups for your system you spend time and money and pray you never have to use it you set a root password and use it from time to time just in case
[toc] | [prev] | [next] | [standalone]
| From | Celejar <celejar@gmail.com> |
|---|---|
| Date | 2020-12-09 01:50 +0100 |
| Message-ID | <BjVQ5-48C-9@gated-at.bofh.it> |
| In reply to | #229419 |
On Mon, 7 Dec 2020 09:30:05 -0600 (CST) grumpy@mailfence.com wrote: ... > i was a sys admin for hpux and linux systems for 25 years now retired > having a root password is along the same line as backups for your system > you spend time and money and pray you never have to use it > you set a root password and use it from time to time just in case But the difference is that if you don't have backups and you do need them, you're in big trouble. If you don't have a root password and you need it, you can always mount the disk from another operating environment, such as a live one, and fix things. A hassle, certainly, but not nearly as catastrophic as not having backups Celejar
[toc] | [prev] | [next] | [standalone]
| From | Fabrice BAUZAC <noon@mykolab.com> |
|---|---|
| Date | 2020-12-12 01:10 +0100 |
| Message-ID | <Bl0E2-2Z0-7@gated-at.bofh.it> |
| In reply to | #229416 |
Greg Wooledge <wooledg@eeg.ccf.org> writes: > Even if you plan to use sudo for 99% of your administrative work, > there's still no reason NOT to have a root password, for those emergency > situations where you need one. I've had the bitter taste of it when I had to salvage a virtual machine for which I had lost access to my non-root account. You'd better have the root password around.
[toc] | [prev] | [next] | [standalone]
| From | Keith Bainbridge <ke1thozgroups@gmx.com> |
|---|---|
| Date | 2020-12-12 03:50 +0100 |
| Message-ID | <Bl38R-4j0-1@gated-at.bofh.it> |
| In reply to | #229687 |
On 12/12/20 11:03 am, Fabrice BAUZAC wrote: > Greg Wooledge <wooledg@eeg.ccf.org> writes: > >> Even if you plan to use sudo for 99% of your administrative work, >> there's still no reason NOT to have a root password, for those emergency >> situations where you need one. > > I've had the bitter taste of it when I had to salvage a virtual machine > for which I had lost access to my non-root account. You'd better have > the root password around. > AND run sudo as root, for additional safety -- Keith Bainbridge ke1thozgroups@gmx.com
[toc] | [prev] | [next] | [standalone]
| From | Andrei POPESCU <andreimpopescu@gmail.com> |
|---|---|
| Date | 2020-12-12 09:40 +0100 |
| Message-ID | <Bl8BA-7MS-5@gated-at.bofh.it> |
| In reply to | #229689 |
[Multipart message — attachments visible in raw view] — view raw
On Sb, 12 dec 20, 13:43:09, Keith Bainbridge wrote: > On 12/12/20 11:03 am, Fabrice BAUZAC wrote: > > Greg Wooledge <wooledg@eeg.ccf.org> writes: > > > > > Even if you plan to use sudo for 99% of your administrative work, > > > there's still no reason NOT to have a root password, for those emergency > > > situations where you need one. > > > > I've had the bitter taste of it when I had to salvage a virtual machine > > for which I had lost access to my non-root account. You'd better have > > the root password around. > > > > AND run sudo as root, for additional safety Is this supposed to be ironic? I really can't tell. Kind regards, Andrei -- http://wiki.debian.org/FAQsFromDebianUser
[toc] | [prev] | [next] | [standalone]
| From | Keith Bainbridge <ke1thozgroups@gmx.com> |
|---|---|
| Date | 2020-12-12 13:00 +0100 |
| Message-ID | <BlbJ8-19L-3@gated-at.bofh.it> |
| In reply to | #229692 |
On 12/12/20 7:29 pm, Andrei POPESCU wrote: >> AND run sudo as root, for additional safety > Is this supposed to be ironic? I really can't tell. There was a detailed discussion here about sudo being a security issue on our systems. It appears to be default in debian 10, so most of us get it as default. I looked at replacing sudo. I found an article that explained how to strengthen it by forcing sudo to require root password. If somebody breaks in, they now need my root password to execute commands that require root permissions (except a couple that I have given nopasswd privilege). It's pretty simple. AFTER you have tested your root password add Defaults rootpw to /etc/sudoers The result: keith@asus3 Sat12Dec2020@22:49:38 :~$ sudo nano /etc/sudoers [sudo] password for root: *** You'll understand that root password must be working BEFORE you amend /etc/sudoers Ironic? -- Keith Bainbridge ke1thozgroups@gmx.com
[toc] | [prev] | [next] | [standalone]
| From | Tixy <tixy@yxit.co.uk> |
|---|---|
| Date | 2020-12-12 14:10 +0100 |
| Message-ID | <BlcOS-21p-7@gated-at.bofh.it> |
| In reply to | #229695 |
On Sat, 2020-12-12 at 22:53 +1100, Keith Bainbridge wrote: > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > AND run sudo as root, for additional safety > > Is this supposed to be ironic? I really can't tell. > > There was a detailed discussion here about sudo being a security issue > on our systems. It appears to be default in debian 10, so most of us get > it as default. The default sudo install only grants privileges to members of the 'sudo' group, and I believe the installer only adds the initial user account it creates to that group if you don't specify a root password at install time. After all, you are going to need some way of gaining root privileges to administer the system :-) I'm not even sure 'sudo' gets installed as part of the base system, but I see it is a 'recommends' of task-desktop, so yes a lot of us will have it installed by default; but normal users won't be able to use it until the system administrator changes the config. (Unless some other Debian package override sudo config??) I have recommends packages disabled on my system so don't have sudo, so I just installed it to verify how it behaves. After asking me for my password it says: tixy is not in the sudoers file. This incident will be reported. and sure enough, my 'root' inbox has an email warning me about the command I was trying to execute. -- Tixy
[toc] | [prev] | [next] | [standalone]
| From | Brian <ad44@cityscape.co.uk> |
|---|---|
| Date | 2020-12-12 14:10 +0100 |
| Message-ID | <BlcOS-21p-17@gated-at.bofh.it> |
| In reply to | #229695 |
On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote: > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > AND run sudo as root, for additional safety > > Is this supposed to be ironic? I really can't tell. > > > There was a detailed discussion here about sudo being a security issue > on our systems. It appears to be default in debian 10, so most of us get > it as default. I looked at replacing sudo. sudo is set up by default by the installer? You're sure? -- Brian.
[toc] | [prev] | [next] | [standalone]
| From | "Andrew M.A. Cater" <amacater@einval.com> |
|---|---|
| Date | 2020-12-12 14:20 +0100 |
| Message-ID | <BlcYx-24z-1@gated-at.bofh.it> |
| In reply to | #229699 |
On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote: > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote: > > > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > > AND run sudo as root, for additional safety > > > Is this supposed to be ironic? I really can't tell. > > > > > > There was a detailed discussion here about sudo being a security issue > > on our systems. It appears to be default in debian 10, so most of us get > > it as default. I looked at replacing sudo. > > sudo is set up by default by the installer? You're sure? > > -- > Brian. > There is a question as to whether you want to set up a root account, I think. If you choose not to, then you get a normal user account. If you choose to set up a root user: If you do _not_ set a root password, then the first user you set up is set up with sudo. In Ubuntu, this is the default behaviour, for example. I'll now need to go and check a standard (as distinct from an expert install) All the very best, Andy C
[toc] | [prev] | [next] | [standalone]
| From | Brian <ad44@cityscape.co.uk> |
|---|---|
| Date | 2020-12-12 14:50 +0100 |
| Message-ID | <BldrA-2ej-3@gated-at.bofh.it> |
| In reply to | #229700 |
On Sat 12 Dec 2020 at 13:15:41 +0000, Andrew M.A. Cater wrote: > On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote: > > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote: > > > > > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > > > AND run sudo as root, for additional safety > > > > Is this supposed to be ironic? I really can't tell. > > > > > > > > > There was a detailed discussion here about sudo being a security issue > > > on our systems. It appears to be default in debian 10, so most of us get > > > it as default. I looked at replacing sudo. > > > > sudo is set up by default by the installer? You're sure? > > > > -- > > Brian. > > > There is a question as to whether you want to set up a root account, I think. > If you choose not to, then you get a normal user account. > > If you choose to set up a root user: > If you do _not_ set a root password, then the first user you set up is set up > with sudo. In Ubuntu, this is the default behaviour, for example. >From user-setup-udeb: Template: passwd/root-login Type: boolean Default: true Description: Allow login as root? If you choose not to allow root to log in, then a user account will be created and given the power to become root using the 'sudo' command. > I'll now need to go and check a standard (as distinct from an expert install) Default: true -- Brian.
[toc] | [prev] | [next] | [standalone]
| From | Kenneth Parker <sea7kenp@gmail.com> |
|---|---|
| Date | 2020-12-12 17:40 +0100 |
| Message-ID | <Blg65-3S8-9@gated-at.bofh.it> |
| In reply to | #229700 |
[Multipart message — attachments visible in raw view] — view raw
On Sat, Dec 12, 2020, 8:16 AM Andrew M.A. Cater <amacater@einval.com> wrote: > On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote: > > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote: > > > > > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > > > AND run sudo as root, for additional safety > > > > Is this supposed to be ironic? I really can't tell. > > > > > > > > > There was a detailed discussion here about sudo being a security issue > > > on our systems. It appears to be default in debian 10, so most of us > get > > > it as default. I looked at replacing sudo. > > > > sudo is set up by default by the installer? You're sure? > > > > -- > > Brian. > > > There is a question as to whether you want to set up a root account, I > think. > If you choose not to, then you get a normal user account. > > If you choose to set up a root user: > If you do _not_ set a root password, then the first user you set up is set > up > with sudo. In Ubuntu, this is the default behaviour, for example. > I use Ubuntu (as well as "pure Debian"). When I install Ubuntu, it does not even give an *option* for a Root Password. The Username that you give during Install goes into the Sudoers list (but not Users defined later). Since I have my own method of System Administration, one of the first things I do, after the first Reboot is "sudo passwd root" and, after completion, I am a happy camper. I'll now need to go and check a standard (as distinct from an expert > install) > I am setting up a Virtual Bullseye Cinnamon system later today. I will, also use "standard install". Between us, we should be able to answer followup questions. > > All the very best, > > Andy C > Thanks! Kenneth Parker >
[toc] | [prev] | [next] | [standalone]
| From | "Andrew M.A. Cater" <amacater@einval.com> |
|---|---|
| Date | 2020-12-12 18:20 +0100 |
| Message-ID | <BlgIN-4lJ-1@gated-at.bofh.it> |
| In reply to | #229708 |
On Sat, Dec 12, 2020 at 11:35:58AM -0500, Kenneth Parker wrote: > On Sat, Dec 12, 2020, 8:16 AM Andrew M.A. Cater <amacater@einval.com> wrote: > > > On Sat, Dec 12, 2020 at 01:03:55PM +0000, Brian wrote: > > > On Sat 12 Dec 2020 at 22:53:41 +1100, Keith Bainbridge wrote: > > > > > > > On 12/12/20 7:29 pm, Andrei POPESCU wrote: > > > > > > AND run sudo as root, for additional safety > > > > > Is this supposed to be ironic? I really can't tell. > > > > > > > > > > > > There was a detailed discussion here about sudo being a security issue > > > > on our systems. It appears to be default in debian 10, so most of us > > get > > > > it as default. I looked at replacing sudo. > > > > > > sudo is set up by default by the installer? You're sure? > > > > > > -- > > > Brian. > > > > > There is a question as to whether you want to set up a root account, I > > think. > > If you choose not to, then you get a normal user account. > > > > If you choose to set up a root user: > > If you do _not_ set a root password, then the first user you set up is set > > up > > with sudo. In Ubuntu, this is the default behaviour, for example. > > > > I use Ubuntu (as well as "pure Debian"). When I install Ubuntu, it does > not even give an *option* for a Root Password. The Username that you give > during Install goes into the Sudoers list (but not Users defined later). > Since I have my own method of System Administration, one of the first > things I do, after the first Reboot is "sudo passwd root" and, after > completion, I am a happy camper. > > I'll now need to go and check a standard (as distinct from an expert > > install) > > On a "normal" as opposed to an Advanced/expert install, it prompts you to give a password for a root user. If you effectively tab through this, not setting a password at all, then you get a normal user account. Andy C > > I am setting up a Virtual Bullseye Cinnamon system later today. I will, > also use "standard install". Between us, we should be able to answer > followup questions. > > > > > All the very best, > > > > Andy C > > > > Thanks! > > Kenneth Parker > > >
[toc] | [prev] | [next] | [standalone]
Page 1 of 2 [1] 2 Next page →
Back to top | Article view | linux.debian.user
csiph-web