[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [[cobalt-users] Server Hacked?]



At 06:41 PM 2/13/00 +0100, you wrote:
Hello all,

how much more security would it bring to me if I would give telnet access on
the RaQ2 only to a few customers who really need it ?

Lots more <smile>.

And, if you would recommend this: Where are the user's privileges stored ? I
don't want to access all virtual site administration pages and manually
remove the telnet flag. I suppose I could modify a file on the RaQ2.

NOT RECOMMENDED, as it will leave the GUI system and the actual system out of sync.

With that in mind, the answer is in the /etc/passwd file.

Simply change the part of the user's line that ends in "/bin/bash" with "/bin/badsh".

Jeff

--
Jeff Lasman <jblists@xxxxxxxxxxxxx>