Security Basics mailing list archives

RE: Is there a kernel patch to stop single user mode?


From: "David Gillett" <gillettdavid () fhda edu>
Date: Fri, 19 Sep 2003 13:10:51 -0700

  Not generally -- by design.

  Physical access to the box is how you "prove" that you're
entitle access to things like single-user mode.  Making sure
that people who shouldn't have access to single-user mode
don't have access to the box is a matter of physical security,
not OS security.

Dave Gillett


-----Original Message-----
From: John Hebert [mailto:johnhebert () it-group com]
Sent: September 19, 2003 09:14
To: 'security-basics () securityfocus com'
Cc: 'general () brlug net'
Subject: Is there a kernel patch to stop single user mode?


Is there a way to stop someone with physical access to the 
box from booting
into single user mode and changing the root password? I'm not 
interested in
solutions that require setting a boot or poweron password in 
the BIOS. I'd
like something that could be done in the Linux kernel, so as 
to apply to
multiple platforms.

Thanks,
John Hebert

--------------------------------------------------------------
-------------
Captus Networks 
Are you prepared for the next Sobig & Blaster? 
 - Instantly Stop DoS/DDoS Attacks, Worms & Port Scans 
 - Precisely Define and Implement Network Security 
 - Automatically Control P2P, IM and Spam Traffic 
FIND OUT NOW -  FREE Vulnerability Assessment Toolkit 
http://www.captusnetworks.com/ads/42.htm
--------------------------------------------------------------
--------------


---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: