Linux: FC-5/64 - Renaming su

EmosOohay

Member
Sep 28, 2000
158
0
0
Linux: FC-5/64 - Renaming su

For security reasons can the command su be renamed without causing other automatic processes to fail?

I thought I would ask before I made the system unbootable.

Thanks,
Arn
 

xtknight

Elite Member
Oct 15, 2004
12,974
0
71
Originally posted by: kamper
Renaming the command does not give you any added security.

They do have to guess one more filename but it's kind of sleezy. You could probably just download an RPM of 'su' and run it, lol. Plus other apps are able to get you to a root terminal like sudo and gksudo/gksu. Just make the root password complex enough or else take the person out of sudoers if you don't want them using sudo.

Maybe if you tell us more background about your situation we can provide a better solution to improve your security.
 

drag

Elite Member
Jul 4, 2002
8,708
0
0
http://www.redhat.com/docs/manuals/linu...rity-guide/s1-wstation-privileges.html

There are several effective ways to to disable root access to your system. Renaming su to something obscure isn't one of them.

The easiest way is going to be simply changing the root default shell to nologin. Just make sure that you have a user account setup to use sudo or something like that. The only way to realy back out of that would be to reboot into a rescue cdrom and edit /etc/passwd to give root a sh or bash shell.

Also you could just change permissions of su to. There are a lot of different things you could do.
 

cleverhandle

Diamond Member
Dec 17, 2001
3,566
3
81
Whatever it is you're trying to accomplish, there are better ways to do it than this. In particular, note that su uses PAM, so you can define all kinds of limits there that will actually be enforced by the program rather than using cheesy obscurity methods.
 

cleverhandle

Diamond Member
Dec 17, 2001
3,566
3
81
Originally posted by: xtknight
You could probably just download an RPM of 'su' and run it, lol.
No, you couldn't. Or rather, you could but it wouldn't work - su is setuid root, and a normal user cannot create such an executable.

 

Nothinman

Elite Member
Sep 14, 2001
30,672
0
0
For security reasons can the command su be renamed without causing other automatic processes to fail?

I thought I would ask before I made the system unbootable.

The system will boot, but renaming the 'su' command won't gain you anything either. That's like thinking "maybe if I move my front door to the side of my house no one will be able to figure out how to get in".
 

kamper

Diamond Member
Mar 18, 2003
5,513
0
0
Originally posted by: Nothinman
That's like thinking "maybe if I move my front door to the side of my house no one will be able to figure out how to get in".
Lol. Nice one
 
sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |