Another question in a similar vein:

Which, if any (besides root and nobody, which are a given), of these
default accounts are critical to the basic functionality of the box?  Is
there a list somewhere where I can match these phantom/daemon users to
their functionality/dependencies?  I'd just as soon blow away things I'll
never use, (uucp, xten, etc), but I am loathe to do so without a better
understanding of the ramifications thereof....

Any information would be greatly appreciated,

Matt

On Tue, 23 Jan 2001, Lawrence Sica wrote:

> Guillermo Leandro wrote:
>
> > Hi everybody!
> >
> > FreeBSD, like almost all Unix OS, has other default users, like uucp,
> > operator, etc. Since this users cames with the FreeBSD distribution, where
> > can I find their passwords?
> >
>
> they don't have any, the  pseudo users and system accounts dont have a login
> shell and their passwords should be set to * as well.    Be careful if you
> remove them since on a make world certain users are expected, same with
> groups.
>
> >
> > Another thing, why is there another uid 0 called toor? Isn't it a potential
> > security hole?
> >
>
> toor is a  big debate for many, its meant to give you another root shell with
> a differing shell, like bash,zsh,ksh whatever.  Reason is you dont wan to mess
> with root's shell.  Someone compared root to a loaded weapon recently, its a
> good analogy since you dont use root unless you mean it and you have to be
> careful.
>
> --Larry
>
>
>
>
>
> To Unsubscribe: send mail to [EMAIL PROTECTED]
> with "unsubscribe freebsd-security" in the body of the message
>



_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/
Matt Chew Spence                Network Engineer/Systems Engineer
[EMAIL PROTECTED]              NASA Research & Education Network
(650) 604-4550  (voice)         Ames Research Center Mail Stop 233-21
(650) 604-3080  (fax)           Moffett Field, CA 94035-1000
_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/



To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-hackers" in the body of the message

Reply via email to