LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Software
User Name
Password
Linux - Software This forum is for Software issues.
Having a problem installing a new program? Want to know which application is best for the job? Post your question in this forum.

Notices


Reply
  Search this Thread
Old 11-03-2005, 08:19 AM   #1
stomach
Member
 
Registered: Sep 2005
Distribution: Debian
Posts: 202

Rep: Reputation: 30
Question Shadow, permissions.


wait that your's they have patience with my English,
I promise that I go to improve.

I have a challenge, that it compromises a little the security,
but is necessary, and very will be well managed.
I installed module AUTH+PAM, in the apache.
I needed to give to the permission of reading in the archive /etc/shadow,
but only for the group shadow-readers.

This configuration to arrive in its final result, I needed to twirl the apache with this group "shadow-readers".
The Proper site, has the documentation to make to function in this way.

Really functions perfectly.




The Problem:



When elapsing of the day,
I perceived that modifying the password of an user using the command passwd,
the permission of the dumb archive /etc/shadow automatically.

This only occurs, modifying the password with the command "passwd".
It can add user to exclude...
With the command "passwd" only occurs.


It sees an example below:

Code:
root@firewall /etc# chmod 640 shadow
root@firewall /etc# chown root:shadow-readers shadow
root@firewall /etc# ls -la
-rw-r----- 1 root shadow-readers 1262 Sep 12 13:20 shadow

It functions perfectly.

But if some user, to enter for ssh and to modify its password,
using the command "passwd"
The Archive shadow automatically loses the permissions that I placed.


Code:
root@firewall /etc# ls -la
-rw------- 1 root root 1262 Sep 12 13:42 shadow

Any user who to change the password happens this!


Then I come through this post, to ask for to the gentlemen,
if he is possible I to decide this problem.
I am to many days, and I did not obtain a Positive result.




It would like To thank the patience of all,
and one more time to ask for Excuses for my English.


They have a Good Night.
 
Old 11-03-2005, 06:39 PM   #2
stomach
Member
 
Registered: Sep 2005
Distribution: Debian
Posts: 202

Original Poster
Rep: Reputation: 30
It will be that no configuration does not exist?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
/etc/shadow- (notice the dash after the word shadow) shellcode Linux - Security 1 09-03-2004 04:54 AM
/etc/passwd or /etc/shadow? tiger7007 Linux - Security 2 03-21-2004 04:41 AM
no shadow entry? netquest1 Linux - General 9 02-22-2004 06:39 PM
shadow file? tjm Linux - Security 4 09-15-2003 04:23 PM
Am I using shadow passwords? keirobyn Linux - Newbie 1 01-28-2002 12:55 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Software

All times are GMT -5. The time now is 07:07 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration