LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Mandriva
User Name
Password
Mandriva This Forum is for the discussion of Mandriva (Mandrake) Linux.

Notices


Reply
  Search this Thread
Old 09-22-2003, 05:44 PM   #1
LGMike
LQ Newbie
 
Registered: Sep 2003
Location: USA
Distribution: Mandrake
Posts: 22

Rep: Reputation: 15
Maxiumum (paranoid) security


I set my Linux network server/PDC's security level to level 5/Paranoid and at that level regular users cannon log into KDE. I set the permissions on such files as /usr/X11R6 to the defaults for level 4, but this still does not fix the problem. What might be the error? When a regular user attempts to login, they're authenticated, then the screen goes dark for a moment and the login screen reappears.

Thanks,
Mike
 
Old 09-24-2003, 12:07 AM   #2
akabullseye
LQ Newbie
 
Registered: Sep 2003
Posts: 2

Rep: Reputation: 0
Same, but I'm dumb to :-(

I had the same problem on a fresh upgrade from 9.0. But to make things even worse, I manually turned on the user list. Now I can't login as root, because it doesn't show in the list. And I can't login as a user, because it logs me out immediately. Now how dumb am I :-o

So is there a way of editting from the command line, the values to turn off the list feature and/or allowing the standard accounts to login?
 
Old 09-24-2003, 11:28 PM   #3
LGMike
LQ Newbie
 
Registered: Sep 2003
Location: USA
Distribution: Mandrake
Posts: 22

Original Poster
Rep: Reputation: 15
Try entering Virtual Console 1 (ctrl+alt+F1) and logging in as a regular user, then SU to root (type su and enter the root password). Now go to /etc/passwd and find your user id and group id (fomat will be usernameassword (or "X" if shadow pws are on):user id:group id:shell::
change your uid (will prolly be 500-something) and gid (also likely 500-something, oftentimes the same as your user id) to 0. Record what your previous ids were, though, since you'll need to manually change them back. Now save the file and login with your username. You username will become root the moment you login. Now change the security settings back to what they should be. The system will likely warn you when you login that another user has a UID and GID of "0"--that's the "exploit" we just used to get around your maximum security, so don't worry about it!
Now open /etc/passwd and change the values back to what they were, then reboot the computer. All should be well at this point, and we've patched the security hole we opened a moment ago so the system won't complain anymore.

Mike
 
Old 09-25-2003, 12:27 AM   #4
akabullseye
LQ Newbie
 
Registered: Sep 2003
Posts: 2

Rep: Reputation: 0
I got it resolved

It seems for what ever reason, the PATH was not setup properly during the upgrade. I found another post in here last night suggested a path issue. So I manually edited the profile for my account in command line and SUCCESS!

So I logged into KDE and edited the common profile and all the accounts work just fine now.

Thanks for the help
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Paranoid Data Security!! elliotfuller Linux - Networking 3 08-26-2005 12:46 AM
What's a good distro if I'm really paranoid about security/viruses? Mr. Hill Linux - Newbie 12 02-23-2005 10:59 PM
Maxiumum Vol Size monkeyleader Linux - Hardware 5 10-22-2004 05:17 PM
Paranoid security raybcher Linux - Security 3 08-29-2003 07:54 AM
Paranoid about SSH Crashed_Again Linux - Security 7 02-02-2003 03:37 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > Mandriva

All times are GMT -5. The time now is 09:37 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration