*BSD News Article 45072


Return to BSD News archive

Xref: sserve comp.sys.sun.admin:48102 comp.unix.admin:29348 comp.unix.bsd:16634 comp.unix.shell:22764 comp.unix.solaris:38958 comp.unix.ultrix:25384 comp.unix.xenix:10632 comp.security.unix:13369
Path: sserve!newshost.anu.edu.au!harbinger.cc.monash.edu.au!simtel!agis!vtc.tacom.army.mil!ulowell.uml.edu!europa.chnt.gtegsc.com!news.mathworks.com!uunet!in1.uu.net!news.nyc.pipeline.com!news.cs.columbia.edu!news.columbia.edu!inibara.cc.columbia.edu!czen
From: czen@inibara.cc.columbia.edu (Chen Zhou)
Newsgroups: comp.sys.sun.admin,comp.unix.admin,comp.unix.bsd,comp.unix.shell,comp.unix.solaris,comp.unix.ultrix,comp.unix.xenix,comp.security.unix
Subject: Shutdown Account
Date: 6 Jun 1995 22:01:19 GMT
Organization: Columbia University
Lines: 24
Distribution: inet
Message-ID: <3r2j7f$7p4@apakabar.cc.columbia.edu>
NNTP-Posting-Host: inibara.cc.columbia.edu



Hi, 

	In order to let the non-unix personnel at work to gracefully 
shutdown the system instead of having them just flip the power. I 
created a uid=0 account named shutdown with a password, i had its shell
linked to /usr/etc/halt and I disabled root login from everywhere else
besides the console. we have xdm running on the console, And I tried
using the account and it seems to do what it suppose to do. what i am 
curious is if anyone has tried this setup before and if it would pose
any sorts of security problems since i notices that 1) halt can carry 
arguments 2) would a combination of this and xdm cause an open loophole?

well, thanks much for the response. please also cc a copy of your post
to me via email at <czen@columbia.edu>

best regards,

/data aka "Jake Luck"                                    <czen@columbia.edu>
                Matrix 29.21 OP and Control Strip Modules Archive Maintainer
voice 212-853-2221> Matrix 29.21 is OFFLINE       (network hardware failure) 
----------------------------------------------------------------------------
                    A journey of a thousand miles begins with a cash advance.