Strange problem with authentication after screensaver lock.

Steve Turnbull steve.turnbull at yhgfl.net
Mon Nov 14 00:11:31 UTC 2005


On Sunday 13 November 2005 21:02, L. Boggio wrote:
> > Yep - with the added advantage that you use your shell config, everything
> > still gets logged as you and you don't have to worry about logging out of
> > the root account... :-):-)
>
> For the shell config, I agree, it's great. Concerning the log out, I
> never used to log in with my root account, I only 'su' konsole (most
> of time) or konqueror (very rare)

Ah, but say if you open a console and 'su' to root, and then leave the PC 
without logging out, your anybody compromising your account, will also be 
able to gain full root access by taking over your shell session.

If, however, you have had to continuously type sudo before each command, 
instead of committing a shell to root, if your account is compromised then 
only your account is at risk (unless the attacker knows your password!!)

Also - 'sudo konqueror' means you can open konqueror with the rights to 
edit/move/delete all files...

Steve

-- 
Steve Turnbull

Digital Content Developer
YHGfL Foundation




More information about the kubuntu-users mailing list