gksudo potentially very insecure

Dennis Kaarsemaker dennis at kaarsemaker.net
Mon Jul 4 12:31:31 CDT 2005


On ma, 2005-07-04 at 18:30 +0200, Wouter Stomp wrote:

> ps. should I file a bug about this? (couldn't find one) or is there a
> reason for doing things this way?

this has already been discussed and the small timeout was chosen to be
the trade-off between the burden of always typing a password and the
insecurity of never having to type it. You can change/disable this
timeout in /etc/sudoers
-- 
Dennis K.
  - Linux for human beings: http://www.ubuntulinux.org
  - Linux voor normale mensen: http://www.ubuntulinux.nl
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.ubuntu.com/archives/ubuntu-devel/attachments/20050704/600db88a/attachment.pgp


More information about the ubuntu-devel mailing list