Path: utzoo!attcan!utgpu!jarvis.csri.toronto.edu!mailrus!uwm.edu!gem.mps.ohio-state.edu!ginosko!uunet!deimos.cis.ksu.edu!connelly From: connelly@deimos.cis.ksu.edu (Paul Connelly) Newsgroups: comp.unix.wizards Subject: Re: Multiple Root ID's considered evil? Message-ID: <3459@deimos.cis.ksu.edu> Date: 12 Sep 89 19:35:51 GMT References: <1723@convex.UUCP> Reply-To: connelly@deimos.cis.ksu.edu (Paul Connelly) Organization: Kansas State University, Dept of Computing & Information Sciences Lines: 9 In article <1723@convex.UUCP> tchrist@convex.com (Tom Christiansen) writes: >Some site are known to have multiple uid 0 accounts so not >everyone needs to know the root password. I seem to recall >that this is considered a poor idea for security reasons. >Could someone please explain why? > uid 0 is root for all intents and purposes. Passing out multiple uid 0 accounts defeats the purpose in not letting other people know "root"'s passwd.