LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise
User Name
Password
Linux - Enterprise This forum is for all items relating to using Linux in the Enterprise.

Notices


Reply
  Search this Thread
Old 05-30-2012, 10:39 AM   #1
bstafford51
LQ Newbie
 
Registered: Jul 2008
Posts: 23

Rep: Reputation: 1
arbitrary su login


When a user logs into a RedHat4 system and executes "whoami" their user name shows correctly. When they su - and execute "whoami" arbitrary users each with root level access definied in /etc/passwd are shown such as admst. This system is one of 30 running on vmware. the other servers work as they should ie su -, enter password, whoami shows root

I am looking for info on the process of su -. Like how it works. I've dug in the web until I'm blind.

note already I know all about the hazards of root access and the story of why is to long to tell. I did not build, buy, or break this system or it's trash of an application.

thanks for any help.
 
Old 05-30-2012, 11:02 AM   #2
MensaWater
LQ Guru
 
Registered: May 2005
Location: Atlanta Georgia USA
Distribution: Redhat (RHEL), CentOS, Fedora, CoreOS, Debian, FreeBSD, HP-UX, Solaris, SCO
Posts: 7,831
Blog Entries: 15

Rep: Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669
What do you mean "with root level access" in /etc/passwd? Do you mean that you've set the UID of these users to 0 so they'd be the same as root?

If so the issue may be the order it is finding the users in /etc/passwd. Is admst one of the UID 0 entries? Is it the first one in /etc/passwd? Is it the last one in /etc/passwd?

FYI: RedHat end of lifed RHEL4 in February of this year. You might want to campaign for move to a newer OS.
 
Old 05-31-2012, 07:59 AM   #3
bstafford51
LQ Newbie
 
Registered: Jul 2008
Posts: 23

Original Poster
Rep: Reputation: 1
RedHat can end of life all it wants, the application vendors don't care so I'm stuck with what I got.

The order in the passwd file doesnot seem to amtter. Yes the UID in passwd was set to give root access. I know it is not logical but I did not right the crappy DB application.
 
Old 06-08-2012, 10:39 AM   #4
Reuti
Senior Member
 
Registered: Dec 2004
Location: Marburg, Germany
Distribution: openSUSE 15.2
Posts: 1,339

Rep: Reputation: 260Reputation: 260Reputation: 260
There is more than one user with uid 0 in /etc/passwd?
 
Old 06-08-2012, 11:31 AM   #5
Sydney
Member
 
Registered: Mar 2012
Distribution: Scientific Linux
Posts: 147

Rep: Reputation: 36
I am sorry if I am speaking out of turn here, but why not use sudo to give your users root level access to just the things they need and not manually edit the passwd file? Multiple users with the same UID is a recipe for trouble.
 
Old 06-08-2012, 12:51 PM   #6
MensaWater
LQ Guru
 
Registered: May 2005
Location: Atlanta Georgia USA
Distribution: Redhat (RHEL), CentOS, Fedora, CoreOS, Debian, FreeBSD, HP-UX, Solaris, SCO
Posts: 7,831
Blog Entries: 15

Rep: Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669Reputation: 1669
Nope. It is the OP that is out of order which is why I didn't bother to reply to him after my first attempt to help. Asking for help then showing an attitude to the only person that responded is a good way to get ignored.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Unpredictable and Arbitrary Crashes doctormt Linux - Newbie 3 07-13-2011 11:43 AM
port forwarding to arbitrary address? genmaicha Linux - Networking 2 02-08-2010 05:02 PM
do you find #include order to be arbitrary? ta0kira Programming 2 08-29-2008 12:02 AM
Arbitrary change of folder permssions apostate Mandriva 1 11-18-2005 12:34 AM
assign an arbitrary name or letter to a directory Melsync Linux - General 3 10-06-2005 09:48 AM

LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise

All times are GMT -5. The time now is 09:02 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration