home *** CD-ROM | disk | FTP | other *** search
- Newsgroups: comp.sys.next.sysadmin
- Path: sparky!uunet!usc!rpi!ghost.dsi.unimi.it!univ-lyon1.fr!chx400!josef!avalon.physik.unizh.ch!lytras
- From: lytras@avalon.physik.unizh.ch (Apostolos Lytras)
- Subject: Re: loginwindow hooks- ARGHHHH!!!!
- Message-ID: <1992Nov20.134347.9096@ifi.unizh.ch>
- Sender: news@ifi.unizh.ch (USENET News Admin)
- Nntp-Posting-Host: avalon
- Organization: Informatik Club d. Universitaet, Zuerich
- References: <1992Nov19.191653.29086@schbbs.mot.com> <1992Nov20.015714.21620@murdoch.acc.Virginia.EDU> <By08zy.Bw2@ux1.cso.uiuc.edu>
- Date: Fri, 20 Nov 1992 13:43:47 GMT
- Lines: 23
-
- Argghhh.... root runs shellscripts!! DON'T DON'T DON'T! A shellscript
- that is run by root *is* a threat to the security of your system and
- possibly of many other systems as well. Especially when it is supposed
- to run inattendedly.
-
- Besides, your programs look like a lot of redundancy to me. Every Login
- and Logout gets logged (with time, connecting host etc.) in
- /usr/adm/wtmp. There is also information about shutdowns, reboots and
- crashes in that file.
-
- You get at least two unix programs to evaluate that file: last, ac. For
- details let Librarian.app show you the according man pages.
-
- You can also search the archives (with archie) for a little piece of C
- code called 'rdwtmp.c' which gives you yet another view of the login
- data in /usr/adm/wtmp.
-
- Cheers
- - A.
- --
- lytras@ifi.unizh.ch | Apostolos Lytras
- lytras@avalon.physik.unizh.ch | Informatik Club der Uni
- lytras@amiga.physik.unizh.ch | Zuerich, SysAdmin
-