Xref: utzoo comp.sys.att:10109 alt.security:1223 Path: utzoo!utgpu!news-server.csri.toronto.edu!cs.utexas.edu!tut.cis.ohio-state.edu!pt.cs.cmu.edu!rochester!udel!princeton!cs!samadams!tr From: tr@samadams.princeton.edu (Tom Reingold) Newsgroups: comp.sys.att,alt.security Subject: Re: Is this a good Idea? WAS Re: root passwd change on 3b2/310 Keywords: 3B2 Password Message-ID: <1531@rossignol.Princeton.EDU> Date: 31 Jul 90 17:23:43 GMT References: <34137@ut-emx.UUCP> <294@alix.UUCP> Sender: news@cs.Princeton.EDU Followup-To: comp.sys.att Organization: The cultural Mecca of Noo Joizy Lines: 22 In article <294@alix.UUCP> isolated@alix.UUCP (James D. Corder) writes: $ I was about to respawn to this question. Then it struck me: $ How does one know if said poster is the SysAdmin? If he/she is then $ I would have no problem giving out such information. Could a responce $ to such cause the root [zero id] password to be changed on all the $ 3B2s at BigWig U? I don't think it's worthwhile to try to keep info on how to break in secret. It won't work. So if I run a system and I know how it can be broken, I may know how to prevent or watch for breakins. I think our legal system is built this way. It's legal for me to tell you how to make a bomb. It's illegal for you to set one off. -- Tom Reingold tr@samadams.princeton.edu rutgers!princeton!samadams!tr 201-577-5814 "Brew strength depends upon the amount of coffee used." -Black&Decker