moko running everything as root

Robert Taylor subscribers at tinsputnik.com
Mon Jun 16 18:03:42 CEST 2008


Francesco Albanese wrote:
> As I already pointed out, re-establishing the correct privilege
> isolation is a fundamental step to enforce security, even though the
> phone will have only 1 user. In the future we should have a few root
> process, dedicated accounts for daemons and a X session belonging to
> the user. IMHO it could be a good idea to suppress root account and to
> take full advantage of PAM+SUDO facility.
>
> F.A.
>   
100% agreed.

The moko isn't a phone ... it's a smart phone. 

This needs to be done right from the start if possible.

Rob






More information about the community mailing list