(lack of) security of client workstations
Paul Gluckauf Haahr
haahr%bogey at princeton.edu
Thu May 11 21:50:40 AEST 1989
Karl Kleinpaste writes:
> > All the software security features in the world won't stop me from
> > hitting L1-A and twiddling memory from the PROM monitor.
rbj at dsys.icst.nbs.gov writes:
> Who says your abort sequence has to be L1-A? Read man 5 kbd. I haven't
> tried it, but TFM indicates that the two key sequence can be changed. It
> would take an awful lot of pounding to discover the new sequence.
by the same token, what's to stop someone from opening up /dev/kbd and
setting the sequence back to l1-a? and chmod 600 /dev/kbd is a bad idea
because suntools, x, etc, would have to be made suid.
what is needed is some way to disable the continue command.
does anybody remember when you needed a skate key to get into console mode
on a pdp-11 or vax? as i remember, all the keys were the same, but it was
some protection.
--
paul haahr
princeton!haahr haahr at princeton.edu haahr at pucc.bitnet
More information about the Comp.sys.sun
mailing list