LinuxQuestions.org
LinuxAnswers - the LQ Linux tutorial section.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 05-29-2002, 11:59 AM   #1
TruckStuff
Member
 
Registered: Apr 2002
Posts: 498

Rep: Reputation: 30
Best way to remote admin: users?


As things stand right now, I am using SSH to remote admin my linux boxes but I am logging in as root every time. For now I am spending most of my time editing config files that are owned by root to get deamons working the way I want them to work. I know this isn't the greatest in terms of secutiry, so I am wondering how I should proceed. If I create another user account on the boxes and su to root, will that let me edit files owned by root? Or is there another group to which I could add a user in order to edit these files? Thanks.
 
Old 05-29-2002, 12:49 PM   #2
Brion
Member
 
Registered: May 2002
Location: Belgium
Distribution: LinuxFromScratch
Posts: 85

Rep: Reputation: 15
just login as ur regular user over SSH, then su to root like u mentioned and u can do anything u want.

also, change the sshd settings so it doesn't allow remote root login anymore.
 
Old 05-29-2002, 01:28 PM   #3
hanzerik
Member
 
Registered: Jan 2002
Location: Cheyenne Wyoming
Distribution: Debian/Raspbian/Mint
Posts: 717

Rep: Reputation: 32
just like he said, but use su- so that you get roots path variables.
 
Old 05-29-2002, 07:31 PM   #4
tyler_durden
Member
 
Registered: May 2001
Posts: 125

Rep: Reputation: 15
You can also set up sudo to allow you to do certian commands without having to type the root password. This would allow you to grant some privleges to users who have to do things, but not give them the root password.

for more info type man sudo

or, go read your (my) book
 
Old 05-29-2002, 08:21 PM   #5
segfault
LQ Newbie
 
Registered: May 2002
Location: UK
Posts: 1

Rep: Reputation: 0
Wink

I tend to use webmin over ssl for my servers at work for remote work (say I'm on call or at home),
its easy and can beat editing loads of different files at the same time (as great for the other admin in our office who is the NT nut,but has to support our linux box's as well (who says ther isn't justice!) , so it kinda make him feel at home.

Last edited by segfault; 05-29-2002 at 08:23 PM.
 
Old 06-01-2002, 04:51 PM   #6
wickdgin
Member
 
Registered: Apr 2002
Distribution: Gentoo, Slackware
Posts: 63

Rep: Reputation: 15
I agree- don't log in as root - but rather use su to switch over. I would actually disable root logins in your sshd config file.
 
Old 06-01-2002, 10:07 PM   #7
tyler_durden
Member
 
Registered: May 2001
Posts: 125

Rep: Reputation: 15
ssl isn't quite as secure as ssh. its a lot easier to mitm attack ssl. I would recomend using ssh instead.

you should prolly disable root logins as well.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Remote Admin IllEatUrHeart Mandriva 1 09-06-2004 06:52 PM
remote admin epeus General 15 02-26-2003 12:33 AM
Remote Admin... kobe Linux - General 1 08-09-2002 09:52 AM
Remote admin? Ricardo77uk Linux - Networking 13 07-13-2001 02:05 PM
Remote admin. How? Q25 Linux - General 5 05-17-2001 04:02 PM


All times are GMT -5. The time now is 02:21 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration