[rescue] cheapness..

Kris Kirby kris at catonic.net
Mon Jun 24 22:41:55 CDT 2002


On Mon, 24 Jun 2002, James Sharp wrote:
> When I left $paycheck_bouncing_company about 4 years ago, they thought
> they were cool & all by changing the root password on the machine.  Of
> course, nevermind the fact that I had and was logging in as root via SSH
> keys and not passwords.  I kept root on that machine for several weeks
> until someone screwed up a DNS zone file (which caused my mail to bounce),
> which I fixed and then put "ALWAYS REMEMBER TO CHECK YOUR DNS FILES" in
> /etc/motd.  After that, the machine disappeared.

Yeah. I hadn't started using keys on that machine. It wasn't ssh
accessable from the outside world -- only DNS, and two HTTP ports.

There id10ts would think the keys were a backdoor, just like the `toor'
accounts I installed.

For the record, I hate /sbin/sh.

--
Kris Kirby, KE4AHR          | TGIFreeBSD... 'Nuff said.
<kris at nospam.catonic.net>   | IM: KrisBSD | HSV, AL.
-------------------------------------------------------
"Fate, it seems, is not without a sense of irony."



More information about the rescue mailing list