LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices


Reply
  Search this Thread
Old 03-03-2020, 08:37 PM   #1
nravirao
LQ Newbie
 
Registered: Mar 2020
Posts: 1

Rep: Reputation: Disabled
Need to understand the command and root@prod01 ~]# cat /etc/shadow root:$1$5f4dcc3b5aa765d61d8327deb882cf99:15651:0:99999:7::: what are t


I want to know the answers to the questions below.
=============
root@prod01 ~]# cat /etc/shadow
root:$1$5f4dcc3b5aa765d61d8327deb882cf99:15651:0:99999:7:::

what are the 3 risk’s observed with the above output, details about the risk, and what would the remediation
steps be.
 
Old 03-03-2020, 09:27 PM   #2
uteck
Senior Member
 
Registered: Oct 2003
Location: Elgin,IL,USA
Distribution: Ubuntu based stuff for the most part
Posts: 1,177

Rep: Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501Reputation: 501
The remediation is to study for the test, the risk is someone getting a cert that does not know what they are doing.
 
5 members found this post helpful.
Old 03-04-2020, 12:48 AM   #3
berndbausch
LQ Addict
 
Registered: Nov 2013
Location: Tokyo
Distribution: Mostly Ubuntu and Centos
Posts: 6,316

Rep: Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002
Quote:
Originally Posted by nravirao View Post
I want to know the answers to the questions below.
=============
root@prod01 ~]# cat /etc/shadow
root:$1$5f4dcc3b5aa765d61d8327deb882cf99:15651:0:99999:7:::

what are the 3 risk’s observed with the above output, details about the risk, and what would the remediation
steps be.
There are distros that don't give root a password at all (Ubuntu, I am looking at you!) and rely on correctly configured sudo to perform system administration tasks. Other distros don't bother; I guess it's a matter of philosophy and opinion.

The password seems to be a bit short, to be honest. I have a default Centos 8 and a default Debian 10 installation here, where it is about three times at long.

I don't know whether the password renewal times can be considered problematic. See man shadow. root can change the password any time (0) and is not forced to change it in the next few centuries (99999). Seven days before the few centuries end, root will be warned. This is how it is set up on the above-mentioned Centos and Debian servers.

Now, the 15651 is the last password change date. The figure means roughly 2012, which is kind of old.

Remediation should be obvious once you decide which of the above points represent risks.

As the other contributor says, go back to the study material and find out what is defined as best practices, because such questions are partially based on opinions and don't have clear-cut answers.

EDIT: "risks" is written without an apostrophe in this context. Perhaps bad spelling is a risk in itself.

Last edited by berndbausch; 03-04-2020 at 12:52 AM.
 
Old 03-06-2020, 08:53 AM   #4
GazL
LQ Veteran
 
Registered: May 2008
Posts: 6,918

Rep: Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035Reputation: 5035
"password" ROFL.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
99999 reuk Linux - Newbie 23 03-14-2016 04:12 PM
[SOLVED] Legacy Account in /etc/passwd, /etc/shadow and/or /etc/group lalit singhania Linux - Newbie 4 06-07-2012 06:33 AM
red hat satellite server and kicstart PASS_MAX_DAYS 99999 unix1adm Red Hat 2 03-15-2012 12:10 PM
/etc/shadow- (notice the dash after the word shadow) shellcode Linux - Security 1 09-03-2004 04:54 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie

All times are GMT -5. The time now is 06:39 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration