LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-30-2004, 03:26 AM   #1
Obie
Member
 
Registered: Apr 2004
Distribution: Red Hat
Posts: 290

Rep: Reputation: 30
Question Securetty


I wish to query and understand what the securetty file does and how I should secure it?

Thanks
 
Old 05-30-2004, 06:04 AM   #2
jschiwal
LQ Guru
 
Registered: Aug 2001
Location: Fargo, ND
Distribution: SuSE AMD64
Posts: 15,733

Rep: Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682Reputation: 682
Some versions of login check if the terminal is listed in /etc/securetty before allowing root to log-in on that terminal. If you had a serial port hooked up to a modem, you might want to delete the line containing the entry for that terminal.

Suppose that you had a computer wired to several dumb terminals at work. The terminal that the administrator would work from would be in the list, and the others would be removed.

PLEASE note!
Your system probably uses PAM (Pluggable Authentication Modules).

excerpt from login man page:
Code:
       On most modern Linux systems PAM (Pluggable Authentication Modules)  is
       used.  On  systems that do not use PAM, the file /etc/usertty specifies
       additional access restrictions for specific users.  Note that this file
       is  not  applicable  to  login  implementations that use PAM (Pluggable
       Authentication Modules), such as most modern Linux  systems.
Please read the securetty man pages as well as login, mingetty and PAM.

Actually, start with PAM. That is were authentication is handled in linux.

It is common not to allow root logins at all. A person then needs to login with their user accounts and su to root when they need to perform administrative work. This it particularily true when more than one user has root access. I something went wrong, or something was done, administratively, that you don't understand, the logs will say who su'ed to root. Then you know who to ask what was done.
 
Old 05-31-2004, 06:37 PM   #3
Obie
Member
 
Registered: Apr 2004
Distribution: Red Hat
Posts: 290

Original Poster
Rep: Reputation: 30
Thank you for your help
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
About the /etc/securetty function ust Linux - General 1 03-10-2005 10:26 PM
About the /etc/securetty function ust Linux - General 2 03-10-2005 02:09 PM
/etc/securetty nabil_boussetta Linux - Security 4 10-13-2004 01:29 PM
/etc/securetty --> I commented out all lines and I can still log in as root adamrau Linux - Security 2 05-30-2004 06:16 AM
securetty and login?? Nevyn2 Linux - Security 5 08-26-2003 02:58 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 11:34 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration