Sundar Yamunachari wrote:
> Darren, Gary:
> 
>    We are in the process of removing root password fields from the 
> livecd GUI installation of OpenSolaris. See bug 1436 
> (http://defect.opensolaris.org/bz/show_bug.cgi?id=1436). As part of the 
> fix, we are forcing the creation of an admin user. In essence the 
> super-user (root) becomes a role. So after a successful installation, 
> the user can login as the administrative user created during the livecd 
> install and can use pfexec successfully. Since we are not asking the 
> root password, what should be the password of root?

It seems to assume that the user created during the install has been 
assigned "Primary Administrator" and that is regarded as a bug it 
shouldn't have been done that way.

http://defect.opensolaris.org/bz/show_bug.cgi?id=4885

>    - If it set to empty password, does it creates a security issue?

Depends on the customers needs.

>    - Does it make sense to setup a password for root even though we are 
> not asking the user to create a root password during installation?

How would anyone know what it was then ?

>    - Does it make sense to force the administrative user to setup a 
> password for root in order to become a super user on the installed system?

I'm not sure we are ready to do this yet I think 4885 needs to be 
resolved first.

-- 
Darren J Moffat

Reply via email to