moko running everything as root

Mikael Lammentausta mikael.lammentausta at gmail.com
Sun Jun 15 14:56:02 CEST 2008


> User "John" running sudo rm -rf /* is better than root running "rm -rf
> /*" because...?

Because sudo can be configured to accept users in certain groups to
run certain commands with or without a password. "rm" can be
restricted, whereas "opkg" can be permitted without password.

IMO, running everything as root introduces a whole world of possible
exploitations without any real benefits.

--mikael




More information about the community mailing list