setuid for "ssh"

alan alan at clueserver.org
Thu Dec 29 21:07:46 UTC 2005


On Thu, 29 Dec 2005, Gavin McDonald wrote:

> Why can't you simply su to root, then start ssh.  I'm sure the list will
> correct me if I'm wrong, but I think running ssh _as_ root is a huge
> security hole.  (If it is even possible...)

So is using rhosts files.  One box get rooted, they all fall.

-- 
"George W. Bush -- Bringing back the Sixties one Nixon at a time."




More information about the redhat-list mailing list