Using sudo to Keep Admins Honest? sudon't!

Derek Broughton news at pointerstop.ca
Sun Nov 5 19:32:58 GMT 2006


Tristan Wibberley wrote:

> No, you should log out of the second account, and then in to the first
> account giving a securable route (via gdm, bugs notwithstanding).

Except it's NOT a securable route - unless you're going to remove "su" from
the system completely, because what a user "should" do is not what they're
_likely_ to do when given a choice between simple and more complex options.

In any case, I fail to see how gdm is more secure than sudo.
-- 
derek




More information about the sounder mailing list