Re: [PATCH] (for 2.3.99pre6) audit_ids system calls

From: Linda Walsh (law@sgi.com)
Date: Tue May 02 2000 - 15:10:28 EST


Alan Curry wrote:

> So finally, you admit CAPP is a bug :)

---
    Lack of CAPP is a bug definitely, but CAPP itself...well...it is government issue ya know...:-)

> > And why again does the "literal password" supplied at the su password prompt > not count?

--- More or less for *tracking* reasons. Let's suppose this system is usually administered remotely and root can only login at the physical console (presumably in a physically secure location). Then each 'su' to root retains who the real 'user' is. The 'root' password may possibly be given out to multiple system admins. You also have the fact that you can possibly suspend the 'su' session and return to the base session -- then back to the previous user, etc, all w/no passwd re-entry.

If we changed the login id to 'root', we'd tend to lose track of who the "real" user was who logged in and "su"ed.

-l

-- Linda Walsh @ SGI | Core Linux - Trust Technology 1200 Crittenden Lane MS:30-3-802 | Voice: (650) 933-5338 Mountain View, CA 94043 | Email: law@sgi.com

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.rutgers.edu Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Sun May 07 2000 - 21:00:10 EST