LinuxQuestions.org
Support LQ: Use code LQ3 and save $3 on Domain Registration
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices

Reply
 
Search this Thread
Old 12-05-2006, 05:10 PM   #1
Haloony
Member
 
Registered: Aug 2005
Posts: 61

Rep: Reputation: 15
Security issue when booting from external device.


Hi, My name is Hal, and I was playing around with my inittab file on dapper. I was trying to make ubuntu start from a text login as a default. So I set the starting runlevel to "1," and ubuntu then had problems booting up it would give the "sending the term signal message" while booting up. I'm not sure why this happened, but it is not why I posted. In order to fix the problem I decided to boot up from my new dsl partition on my new thumbdrive. The thing is that it was very easy for me to mount my main internal partition and edit inittab, and it is unnerving how easy it was to manipulate my filesystem. Is there some security fix so that this is not possible? Thanks, Hal
 
Old 12-05-2006, 05:56 PM   #2
JAKK
Member
 
Registered: Jun 2006
Distribution: Slackware 11
Posts: 92

Rep: Reputation: 15
Hi. I'm not sure if there's anything you could do with linux other than encrypt the whole hard disk,but you could try disabling the option to boot from usb and cd in your bios.After disabling those,you could set a bios password. This is a problem with any computer,regardless of the os. For example,someone can easily go up to a windows box,insert a live cd,and get the password hashes within 30 seconds. The same could go for linux. Some companies even go so far as to epoxy the usb ports or just use thin clients that don't have any cd/usb drives.
 
Old 12-05-2006, 06:10 PM   #3
btmiller
Senior Member
 
Registered: May 2004
Location: In the DC 'burbs
Distribution: Arch, Scientific Linux, Debian, Ubuntu
Posts: 4,111

Rep: Reputation: 312Reputation: 312Reputation: 312Reputation: 312
JAKK is right. However, no software based security measures can prevent someone from opening the case and just taking out the hard drive unless you have a top of the line case with a locking mechanism. Even then the attacker can just take the entire machine. Likewise BIOS passwords can be reset (usually by disconnecting the motherboard battery, but it takes time to work). This is why companies generally keep servers in locked rooms with security guards.

BTW, 1 is generally the single user mode runlevel. You probably wanted runlevel 2.
 
Old 12-05-2006, 09:43 PM   #4
Haloony
Member
 
Registered: Aug 2005
Posts: 61

Original Poster
Rep: Reputation: 15
Yeah I guess it is ridiculous to try and find ways to secure a computer once someone is given physical access. Still a bios password creates an extra layer for someone to get through. It was set at runlevel 2(multi user) as a default, and I read that if i wanted to begin from a non-graphical login to set the runlevel to 1 or single user. Im not doing this for any particular reason I'm just trying to finally break out of the noob stage of linux and get a feel for the linux universe. Thanks, Hal
 
Old 12-05-2006, 09:57 PM   #5
Wim Sturkenboom
Senior Member
 
Registered: Jan 2005
Location: Roodepoort, South Africa
Distribution: Slackware 10.1/10.2/12, Ubuntu 12.04, Crunchbang Statler
Posts: 3,786

Rep: Reputation: 282Reputation: 282Reputation: 282
Not related to the security question, but run level 1 is a single user mode (as you mentioned) and not a multi user text login.
Single user mode is for maintenance. It will usually not give you a fully functional system. I think what you want is a multi user text login.

I don't have dapper drake at hand at the moment, but noticed after installation of it that multiuser text login is indeed missing (did not look at it further).

You might have to dig into the startup directories (/etc/rc...) and modify one of them so it does not start X to get a 'normal' system.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Journaling on external device paulsiu Linux - General 2 10-26-2006 10:16 PM
I2C to external device ojschubert Linux - Newbie 1 03-20-2005 06:26 PM
device path for external device ust Linux - General 4 11-22-2004 08:57 AM
webmin issue, poss security issue bejiita Slackware 3 11-03-2004 06:07 AM
booting Linux from external USB 2.0 device friedrice4u Linux - Newbie 2 09-19-2004 07:44 AM


All times are GMT -5. The time now is 09:27 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration