Newsgroups: comp.unix.ultrix Path: utzoo!utgpu!watserv1!watcgl!idallen From: idallen@watcgl.waterloo.edu (Ian! D. Allen [CGL]) Subject: Re: 4.0 Enhanced Security & root/field accts Message-ID: <1990Sep13.060338.7553@watcgl.waterloo.edu> Keywords: ultrix 4.0 Organization: University of Waterloo References: <48811@cmcl2.NYU.EDU> Date: Thu, 13 Sep 90 06:03:38 GMT Lines: 17 In article <48811@cmcl2.NYU.EDU> rosenblg@cmcl2.NYU.EDU (Gary J. Rosenblum) writes: >Background - Ultrix 4.0 installed, ENHANCED security enabled. > (Using the auth database). > >The way it is distributed, the root and field accounts both have >uid 0, gid 1. Problem is, when you set the password for root, >field gets set the same, and vice-versa. This is due to the uid >being the key into the database. This is not "fatal", but it might >introduce problems to the non-wary ranging from passwords seemingly >changing, to a security hole. Oh dear. Does this mean I can't have different uucp logins using the same uucp uid? Will they all have to have the same password? -- -IAN! (Ian! D. Allen) idallen@watcgl.uwaterloo.ca idallen@watcgl.waterloo.edu [129.97.128.64] Computer Graphics Lab/University of Waterloo/Ontario/Canada