Security problem with local root user on SUN workstations

Tony Tran tran at versatc.UUCP
Tue Nov 15 18:58:57 AEST 1988


 We run into a big security problem on our SUN local network when a user
 who has access to root (on the local workstation) decides to "su" to
 any valid username on the YP server, and therefore access any file
 he wants.

 Since I cannot keep track of all local root users in the SUN NFS
 environment, how can I get around this serious problem ?

 Any hint/advice would be greatly appreciated.

 Tony Tran

-- 
UUCP: {sun|ames|pyramid|vsi1|mips}!versatc!tran  	Tony Tran
Versatec, 2805 Bowers Avenue, Santa Clara, Calif 95051 (408)982-4317



More information about the Comp.unix.questions mailing list