Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #187671 > unrolled thread

Root Privilege Issue

Started byARAVIND B KUMAR <aravind.aravind892@gmail.com>
First post2017-10-07 08:10 +0200
Last post2017-10-07 18:00 +0200
Articles 7 — 5 participants

Back to article view | Back to linux.debian.user


Contents

  Root Privilege Issue ARAVIND B KUMAR <aravind.aravind892@gmail.com> - 2017-10-07 08:10 +0200
    Re: Root Privilege Issue Tapio Lehtonen <tale@taleman.fi> - 2017-10-07 10:40 +0200
    Re: Root Privilege Issue Joe <joe@jretrading.com> - 2017-10-07 11:30 +0200
      Re: Root Privilege Issue <tomas@tuxteam.de> - 2017-10-07 13:10 +0200
        Re: Root Privilege Issue tomas@tuxteam.de - 2017-10-07 17:40 +0200
          Re: Root Privilege Issue ARAVIND B KUMAR <aravind.aravind892@gmail.com> - 2017-10-07 17:50 +0200
            Re: Root Privilege Issue tomas@tuxteam.de - 2017-10-07 18:00 +0200

#187671 — Root Privilege Issue

FromARAVIND B KUMAR <aravind.aravind892@gmail.com>
Date2017-10-07 08:10 +0200
SubjectRoot Privilege Issue
Message-ID<uxQjw-3v0-5@gated-at.bofh.it>

[Multipart message — attachments visible in raw view] — view raw

Hello Sir

We Are Using Debian 9 With Gnome And We Have 2 Account One Is Root And
Other One Is User Account Recently We Change The User Account To
Administrator And After That We Cant Change The Administrator To Root And
While We Mount The Drive Its Ask For User Account Password Not Root
Password And We Change The User Privilege But Still It Ask For User
Password And UID/GID 1000 And We Also Remove The User Line In Sudoers But
Still It Ask User Password Only And Please Help Us.

We Are Looking Forward From You.

Thanks You

Best Regards
Aravind Kumar

[toc] | [next] | [standalone]


#187673

FromTapio Lehtonen <tale@taleman.fi>
Date2017-10-07 10:40 +0200
Message-ID<uxSOm-5dd-7@gated-at.bofh.it>
In reply to#187671

[Multipart message — attachments visible in raw view] — view raw

On Sat, Oct 07, 2017 at 11:21:39AM +0530, ARAVIND B KUMAR wrote:
> Hello Sir
> 
> We Are Using Debian 9 With Gnome And We Have 2 Account One Is Root And
> Other One Is User Account Recently We Change The User Account To
> Administrator And After That We Cant Change The Administrator To Root And
> While We Mount The Drive Its Ask For User Account Password Not Root
> Password And We Change The User Privilege But Still It Ask For User
> Password And UID/GID 1000 And We Also Remove The User Line In Sudoers But
> Still It Ask User Password Only And Please Help Us.
> 
> We Are Looking Forward From You.
> 
> Thanks You
> 
> Best Regards
> Aravind Kumar

I do not understand the problem. Can You Maybe write the commands You
are issuing and what error messages You get? Or maybe use a
debian-user mailing list in Your own language, there are several lists
available:
https://lists.debian.org/completeindex.html
Look for debian-user- and language name. 

-- 
Tapio Lehtonen
tapio.lehtonen@iki.fi
http://www.iki.fi/tapio.lehtonen

[toc] | [prev] | [next] | [standalone]


#187678

FromJoe <joe@jretrading.com>
Date2017-10-07 11:30 +0200
Message-ID<uxTAJ-5Q0-5@gated-at.bofh.it>
In reply to#187671
On Sat, 7 Oct 2017 11:21:39 +0530
ARAVIND B KUMAR <aravind.aravind892@gmail.com> wrote:

> Hello Sir
> 
> We Are Using Debian 9 With Gnome And We Have 2 Account One Is Root And
> Other One Is User Account Recently We Change The User Account To
> Administrator And After That We Cant Change The Administrator To Root
> And While We Mount The Drive Its Ask For User Account Password Not
> Root Password And We Change The User Privilege But Still It Ask For
> User Password And UID/GID 1000 And We Also Remove The User Line In
> Sudoers But Still It Ask User Password Only And Please Help Us.
> 
> We Are Looking Forward From You.
> 

Can you say what it is you want to achieve?

Debian will assign the UID and GID 1000 to the first normal user
account created. This user account will never have root privileges
except through su or sudo, or one of the variants of them. There is
only one root account, with UID/GID 0.

No user account can be turned into root, this is not Windows. If you
want a particular user to have root privileges, you either give him the
root password and let him use su, or assign some or all privileges
using sudo and he can use his own password for these occasions. The
latter is recommended, as any log entries will show his user name. If
more than one person is using root through su, it is often impossible
to say which user did what.

Does any of this cover what you want to do? If not, please explain
further.

-- 
Joe

[toc] | [prev] | [next] | [standalone]


#187685

From<tomas@tuxteam.de>
Date2017-10-07 13:10 +0200
Message-ID<uxV9w-6VY-17@gated-at.bofh.it>
In reply to#187678
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sat, Oct 07, 2017 at 10:29:19AM +0100, Joe wrote:
> On Sat, 7 Oct 2017 11:21:39 +0530
> ARAVIND B KUMAR <aravind.aravind892@gmail.com> wrote:
> 
> > Hello Sir
> > 
> > We Are Using Debian 9 With Gnome And We Have 2 Account One Is Root And
> > Other One Is User Account Recently We Change The User Account To
> > Administrator And After That We Cant Change The Administrator To Root
> > And While We Mount The Drive Its Ask For User Account Password Not
> > Root Password And We Change The User Privilege But Still It Ask For
> > User Password And UID/GID 1000 And We Also Remove The User Line In
> > Sudoers But Still It Ask User Password Only And Please Help Us.
> > 
> > We Are Looking Forward From You.
> > 
> 
> Can you say what it is you want to achieve?
> 
> Debian will assign the UID and GID 1000 to the first normal user
> account created. This user account will never have root privileges
> except through su or sudo, or one of the variants of them. There is
> only one root account, with UID/GID 0.
> 
> No user account can be turned into root, this is not Windows. If you
> want a particular user to have root privileges, you either give him the
> root password and let him use su, or assign some or all privileges
> using sudo and he can use his own password for these occasions. The
> latter is recommended, as any log entries will show his user name. If
> more than one person is using root through su, it is often impossible
> to say which user did what.
> 
> Does any of this cover what you want to do? If not, please explain
> further.

Perhaps, just perhaps Mr. Kumar is describing the difference
between the "normal" user (id 1000) being in the sudo group
or not. ("change user account to administrator" may just mean
"adding the user to group sudo").

Hello, Mr. Kumar: could you describe *how* you changed the user
account to administrator?

Could you issue the following two commands in a shell (as the
"normal" user) and show us the results?

  id -G
  id -Gn

Cheers & thanks
- -- tomás
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iEYEARECAAYFAlnYtDQACgkQBcgs9XrR2kauagCfXWlr9auizfg47jEhevxzQnfH
0IkAn18w9F/KJGO6W9dRcqbz3uzld0KV
=SeLH
-----END PGP SIGNATURE-----

[toc] | [prev] | [next] | [standalone]


#187692

Fromtomas@tuxteam.de
Date2017-10-07 17:40 +0200
Message-ID<uxZmN-10a-9@gated-at.bofh.it>
In reply to#187685
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sat, Oct 07, 2017 at 08:51:01PM +0530, ARAVIND B KUMAR wrote:
> First Of All Thanks For The Replay And We Change The Normal User To
> Administrator Using User Admin Tool Which I Attach The Screen Shot Of It
> And Before I Change The User To Administrator While Mount The Hard drive It
> Ask For Root Password But Now It Ask For User Password  And I Attach The
> Screen Shot And We Didn't Use The Command To Change And We Didn't Mean
> About Adding User To Group Sudoers

I'm sorry I don't know very much about desktop environments, but if I
interpret your description correctly, what this button ("Administrator")
seems to be doing is adding the user to the sudoers group.

That suspicion is reinforced by the fact that formerly you were asked
the root password and now the user's password. BUT... desktop environments
have sometimes their very own funny ways of doing things.

Perhaps someone with more clues on desktop environments can chime in.

Have you tried the "Advanced" settings?

Again -- if you start a terminal as a normal user, what is the output
of the commands "id -G" and "id -Gn" (those print the groups that user
is member of: the first by number, the second by name)

Cheers
- -- tomás
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iEYEARECAAYFAlnY9RgACgkQBcgs9XrR2kaUEwCfe3lzdBvudPrfgLEbzidJDa5s
1IYAniQ793+w0DT2PcsUuqJsY6Q5+Iku
=0vS6
-----END PGP SIGNATURE-----

[toc] | [prev] | [next] | [standalone]


#187693

FromARAVIND B KUMAR <aravind.aravind892@gmail.com>
Date2017-10-07 17:50 +0200
Message-ID<uxZwu-13D-9@gated-at.bofh.it>
In reply to#187692

[Multipart message — attachments visible in raw view] — view raw

Yes But Not Changed

On Sat, Oct 7, 2017 at 9:09 PM, <tomas@tuxteam.de> wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
>
> On Sat, Oct 07, 2017 at 08:51:01PM +0530, ARAVIND B KUMAR wrote:
> > First Of All Thanks For The Replay And We Change The Normal User To
> > Administrator Using User Admin Tool Which I Attach The Screen Shot Of It
> > And Before I Change The User To Administrator While Mount The Hard drive
> It
> > Ask For Root Password But Now It Ask For User Password  And I Attach The
> > Screen Shot And We Didn't Use The Command To Change And We Didn't Mean
> > About Adding User To Group Sudoers
>
> I'm sorry I don't know very much about desktop environments, but if I
> interpret your description correctly, what this button ("Administrator")
> seems to be doing is adding the user to the sudoers group.
>
> That suspicion is reinforced by the fact that formerly you were asked
> the root password and now the user's password. BUT... desktop environments
> have sometimes their very own funny ways of doing things.
>
> Perhaps someone with more clues on desktop environments can chime in.
>
> Have you tried the "Advanced" settings?
>
> Again -- if you start a terminal as a normal user, what is the output
> of the commands "id -G" and "id -Gn" (those print the groups that user
> is member of: the first by number, the second by name)
>
> Cheers
> - -- tomás
> -----BEGIN PGP SIGNATURE-----
> Version: GnuPG v1.4.12 (GNU/Linux)
>
> iEYEARECAAYFAlnY9RgACgkQBcgs9XrR2kaUEwCfe3lzdBvudPrfgLEbzidJDa5s
> 1IYAniQ793+w0DT2PcsUuqJsY6Q5+Iku
> =0vS6
> -----END PGP SIGNATURE-----
>

[toc] | [prev] | [next] | [standalone]


#187694

Fromtomas@tuxteam.de
Date2017-10-07 18:00 +0200
Message-ID<uxZG9-16S-11@gated-at.bofh.it>
In reply to#187693
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Sat, Oct 07, 2017 at 09:12:25PM +0530, ARAVIND B KUMAR wrote:
> Yes But Not Changed

Sorry. I don't understand what you mean by that.

Again -- if you start a terminal as a normal user, what is the output
of the commands "id -G" and "id -Gn" (those print the groups that user
is member of: the first by number, the second by name)

Cheers
- -- tomás
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iEYEARECAAYFAlnY+IYACgkQBcgs9XrR2kY6IgCfdbUwxrEhc5W2oZcva77hQALO
lRQAn3BPs0EIzNojdk8mfXs//yWQqcAp
=LKd8
-----END PGP SIGNATURE-----

[toc] | [prev] | [standalone]


Back to top | Article view | linux.debian.user


csiph-web