LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise
User Name
Password
Linux - Enterprise This forum is for all items relating to using Linux in the Enterprise.

Notices


Reply
  Search this Thread
Old 02-28-2007, 05:20 AM   #1
sachin1361
Member
 
Registered: Feb 2007
Posts: 126

Rep: Reputation: 15
shutdown ?????


By-default ... root has full access to the server either from direct console or through other utilities such as ssh , telnet etc. I want that root(default) user ,when telnet to linux server , could not shutdown it from the remote location but if he wants to make shutdown , he should come to the server and enter shutdown or other commands to shutdown.

in other words, I want root should be denied access to shutdown from the remote location but he can do it only from the server
 
Old 02-28-2007, 05:24 AM   #2
macemoneta
Senior Member
 
Registered: Jan 2005
Location: Manalapan, NJ
Distribution: Fedora x86 and x86_64, Debian PPC and ARM, Android
Posts: 4,593
Blog Entries: 2

Rep: Reputation: 344Reputation: 344Reputation: 344Reputation: 344
You have much bigger problems if you have people with root access that cannot be trusted to follow policy.
 
Old 02-28-2007, 05:56 AM   #3
sachin1361
Member
 
Registered: Feb 2007
Posts: 126

Original Poster
Rep: Reputation: 15
well

well ...relax Dear

this is my testing lab and i want to deny the same user for shutdown command on remote system and allow on local system..

got It !!!!!!!!!1
 
Old 02-28-2007, 06:17 AM   #4
macemoneta
Senior Member
 
Registered: Jan 2005
Location: Manalapan, NJ
Distribution: Fedora x86 and x86_64, Debian PPC and ARM, Android
Posts: 4,593
Blog Entries: 2

Rep: Reputation: 344Reputation: 344Reputation: 344Reputation: 344
Got it !!!!!!!!!!!111!!1

Good luck.
 
Old 02-28-2007, 09:57 AM   #5
wpn146
Member
 
Registered: Jan 2005
Distribution: Solaris, Linux Fedora Core 6
Posts: 170

Rep: Reputation: 30
In general, do not allow login access to "root" via any means (telnet, ssh, etc...). Require login access to be through a normal username, one that is validated to use sudo or su.

You could also move the "shutdown" command somewhere else and place a script there that checks the output of the "who" command for the absence of string "pts/" before passing the command to the renamed version of shutdown. Note that this trick will work only until the user learns where the new location is at. Also, it does nothing to protect "reboot" or "init 6".
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
'shutdown now' successful, 'shutdown -r now' fails Stomatella Linux - Hardware 4 05-23-2006 10:45 PM
Please help on how to save services shutdown or shutdown from the terminal. wambuzz Linux - General 2 03-11-2005 07:38 AM
Linux full shutdown vs. manual shutdown? LQtoto Linux - General 9 01-26-2005 06:21 PM
unable to 'shutdown' from x... need to shutdown using 'halt' guitarnix Linux - Newbie 5 11-24-2003 01:00 AM
konsole shutdown possible? or key combo = shutdown possible? Laptop2250 Linux - Newbie 3 11-16-2003 10:44 AM

LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise

All times are GMT -5. The time now is 01:49 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration