[SunHELP] Root Passwd

Lund, Dennis sunhelp at sunhelp.org
Fri Jun 22 07:58:27 CDT 2001


This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.

------_=_NextPart_001_01C0FB1B.07A73020
Content-Type: text/plain; charset="iso-8859-1"



I would have to agree with this 100%.  If the person is not 
cooperating, take it to management.  A breach of security like
this is totally unacceptable.

Dennis L. Lund

-----Original Message-----
From: Przyjazny, Martin [mailto:martin.przyjazny at eds.com]
Sent: 21 June 2001 14:11
To: 'sunhelp at sunhelp.org'
Subject: RE: [SunHELP] Root Passwd


Or instead of perpetuating the non-cooperative spirit,
talk to him frankly, and involve management.

The sysadmin IS management.

>From a sysadmin point of view there are limits to what a user is and isn't
allowed to do.
DIY privilege elevation is strictly on the "DO NOT" list. The user has
already proved to be 
uncooperative by not handing over the script/binary.

In most organisations such behaviour warrants disciplinary action. If one of
your users compromises a system that you run what would your reaction be? A
polite, "please don't do that", isn't what's in the books. I think most
admins would use, "You're fired!"

I may sound harsh but I don't think I'm being unreasonable.




MetaPack
The Lightwell 
12/16 Laystall Street 
Clerkenwell 
London EC1R 4PF 
Tel: +44 (0) 20 7843 6720 
Fax: +44 (0) 20 7843 6721
--------------------------------------------------------------------------
This email is confidential and proprietary; 
all information contained in it must be used only by the addressee in
accordance with MetaPack's terms of business and non-disclosure agreement. 
Disclosure, copying, and distribution to, or use by, anyone other than the
intended recipient is strictly prohibited and may be unlawful.
_______________________________________________
SunHELP maillist  -  SunHELP at sunhelp.org
http://www.sunhelp.org/mailman/listinfo/sunhelp


<html>
<body>
<font size="3" face="Times New Roman"><span style="mso-fareast-font-family: Times New Roman; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA">
- - - - - - - Appended by Scientific-Atlanta, Inc. - - - - - - -
<span style="font-size:10.0pt;font-family:Times New Roman;
mso-fareast-font-family:"Times New Roman";mso-ansi-language:EN-US;mso-fareast-language:
EN-US;mso-bidi-language:AR-SA"></span><font face="Times New Roman" size="3"><span style="mso-fareast-font-family:Times New Roman; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA">This e-mail and any attachments may contain information which is confidential, proprietary, privileged or otherwise protected by law. The information is solely intended for the named addressee (or a person responsible for delivering it to the addressee). If you are not the intended recipient of this message, you are not authorized to read, print, retain, copy or disseminate this message or any part of it. If you have received this e-mail in error, please notify the sender immediately by return e-mail and delete it from your computer.</span></font></p>
</body>
</html>

------_=_NextPart_001_01C0FB1B.07A73020
Content-Type: text/html; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; charset=3Diso-8859-=
1">
<META NAME=3D"Generator" CONTENT=3D"MS Exchange Server version 5.5.2653.12">
<TITLE>RE: [SunHELP] Root Passwd</TITLE>
</HEAD>
<BODY>
<BR>
<BR>

<P><FONT SIZE=3D2>I would have to agree with this 100%.  If the person=
 is not </FONT>
<BR><FONT SIZE=3D2>cooperating, take it to management.  A breach of se=
curity like</FONT>
<BR><FONT SIZE=3D2>this is totally unacceptable.</FONT>
</P>

<P><FONT SIZE=3D2>Dennis L. Lund</FONT>
</P>

<P><FONT SIZE=3D2>-----Original Message-----</FONT>
<BR><FONT SIZE=3D2>From: Przyjazny, Martin [<A HREF=3D"mailto:martin.przyja=
zny at eds.com">mailto:martin.przyjazny at eds.com</A>]</FONT>
<BR><FONT SIZE=3D2>Sent: 21 June 2001 14:11</FONT>
<BR><FONT SIZE=3D2>To: 'sunhelp at sunhelp.org'</FONT>
<BR><FONT SIZE=3D2>Subject: RE: [SunHELP] Root Passwd</FONT>
</P>
<BR>

<P><FONT SIZE=3D2>Or instead of perpetuating the non-cooperative spirit,</F=
ONT>
<BR><FONT SIZE=3D2>talk to him frankly, and involve management.</FONT>
</P>

<P><FONT SIZE=3D2>The sysadmin IS management.</FONT>
</P>

<P><FONT SIZE=3D2>From a sysadmin point of view there are limits to what a =
user is and isn't</FONT>
<BR><FONT SIZE=3D2>allowed to do.</FONT>
<BR><FONT SIZE=3D2>DIY privilege elevation is strictly on the "DO NOT&=
quot; list. The user has</FONT>
<BR><FONT SIZE=3D2>already proved to be </FONT>
<BR><FONT SIZE=3D2>uncooperative by not handing over the script/binary.</FO=
NT>
</P>

<P><FONT SIZE=3D2>In most organisations such behaviour warrants disciplinar=
y action. If one of</FONT>
<BR><FONT SIZE=3D2>your users compromises a system that you run what would =
your reaction be? A</FONT>
<BR><FONT SIZE=3D2>polite, "please don't do that", isn't what's i=
n the books. I think most</FONT>
<BR><FONT SIZE=3D2>admins would use, "You're fired!"</FONT>
</P>

<P><FONT SIZE=3D2>I may sound harsh but I don't think I'm being unreasonabl=
e.</FONT>
</P>
<BR>
<BR>
<BR>

<P><FONT SIZE=3D2>MetaPack</FONT>
<BR><FONT SIZE=3D2>The Lightwell </FONT>
<BR><FONT SIZE=3D2>12/16 Laystall Street </FONT>
<BR><FONT SIZE=3D2>Clerkenwell </FONT>
<BR><FONT SIZE=3D2>London EC1R 4PF </FONT>
<BR><FONT SIZE=3D2>Tel: +44 (0) 20 7843 6720 </FONT>
<BR><FONT SIZE=3D2>Fax: +44 (0) 20 7843 6721</FONT>
<BR><FONT SIZE=3D2>--------------------------------------------------------=
------------------</FONT>
<BR><FONT SIZE=3D2>This email is confidential and proprietary; </FONT>
<BR><FONT SIZE=3D2>all information contained in it must be used only by the=
 addressee in</FONT>
<BR><FONT SIZE=3D2>accordance with MetaPack's terms of business and non-dis=
closure agreement. </FONT>
<BR><FONT SIZE=3D2>Disclosure, copying, and distribution to, or use by, any=
one other than the</FONT>
<BR><FONT SIZE=3D2>intended recipient is strictly prohibited and may be unl=
awful.</FONT>
<BR><FONT SIZE=3D2>_______________________________________________</FONT>
<BR><FONT SIZE=3D2>SunHELP maillist  -  SunHELP at sunhelp.org</FONT>
<BR><FONT SIZE=3D2><A HREF=3D"http://www.sunhelp.org/mailman/listinfo/sunhe=
lp" TARGET=3D"_blank">http://www.sunhelp.org/mailman/listinfo/sunhelp</A></=
FONT>
</P>

<CODE><FONT SIZE=3D3><BR>
<BR>
<html><BR>
<body><BR>
<font size=3D"3" face=3D"Times New Roman"><span style=3D"mso-fareast-font-f=
amily: Times New Roman; mso-ansi-language: EN-US; mso-fareast-language: EN-=
US; mso-bidi-language: AR-SA"><BR>
- - - - - - - Appended by Scientific-Atlanta, Inc. - - - - - - -<BR>
<span style=3D"font-size:10.0pt;font-family:Times New Roman;<BR>
mso-fareast-font-family:"Times New Roman";mso-ansi-language:EN-US=
;mso-fareast-language:<BR>
EN-US;mso-bidi-language:AR-SA"></span><font face=3D"Times New Roman" size=
=3D"3"><span style=3D"mso-fareast-font-family:Times New Roman; mso-ansi-lan=
guage: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA">This e=
-mail and any attachments may contain information which is confidential, pr=
oprietary, privileged or otherwise protected by law. The information is sol=
ely intended for the named addressee (or a person responsible for deliverin=
g it to the addressee). If you are not the intended recipient of this messa=
ge, you are not authorized to read, print, retain, copy or disseminate this=
 message or any part of it. If you have received this e-mail in error, plea=
se notify the sender immediately by return e-mail and delete it from your c=
omputer.</span></font></p><BR>
</body><BR>
</html><BR>
</FONT></CODE></BODY>
</HTML>
------_=_NextPart_001_01C0FB1B.07A73020--



More information about the SunHELP mailing list