[SUMMARY] Problem with GNU screen and multiple users on Solaris 9

From: Storie, Sam [EPM/RTC] (Sam.Storie_at_EmersonProcess.com)
Date: 12/28/04

  • Next message: HRISHIKESH KULKARNI: "Problems Booting up V1280"
    To: "'sunmanagers@sunmanagers.org'" <sunmanagers@sunmanagers.org>
    Date: Tue, 28 Dec 2004 16:22:29 -0600
    
    

    Thanks to Neil D Quiogue and Luc I. Suryo for their responses which led to
    one solution to this problem.

    Setting the screen binary to be suid root (chmod u+s) will prevent this
    problem from occurring. I'm not totally comfortable with the security
    implications of doing so, but I've now found other postings of people using
    a suid screen to overcome other problems. For example, many Linux admins
    seem okay with setting screen suid root to allow utmp updates to work
    properly. I trust our user base, but suid root programs just make me a bit
    nervous. I'd still appreciate hearing from other Solaris admins about this,
    but it seemed like a good idea to post this solution.

    -Sam

    ---
    Sam Storie
    Database Administrator
    Rosemount Incorporated
    Emerson Process Management
    _______________________________________________
    sunmanagers mailing list
    sunmanagers@sunmanagers.org
    http://www.sunmanagers.org/mailman/listinfo/sunmanagers
    

  • Next message: HRISHIKESH KULKARNI: "Problems Booting up V1280"

    Relevant Pages

    • Re: SUID program removal
      ... Make suid programs executable by this group. ... Here a list I have hanging around from an unpatched RedHat install (but ... only required to be suid root if you want regular users ... only root needs to change password expiration. ...
      (Focus-Linux)
    • Re: fedora-list Digest, Vol 1, Issue 1394
      ... Ditch use of kppp and use wvdial - you can use a suid perl script to ... then an suid root script to call wvdial is ... > I chose Power Desktop Installation and a decent user-oriented installation ...
      (Fedora)
    • Re: [Full-Disclosure] flames security group start to play , yet another vuln found (rustymemory and
      ... You shouldn't have much on your system that is SUID root. ... >>of flames security group. ... >>Full-Disclosure - We believe in it. ...
      (Full-Disclosure)
    • Re: Rhosts/shosts for OpenSSH 3.4p1
      ... The permissions on the public key files are open ... SSH1 hostbased ssh had to be SUID root. ...
      (comp.security.ssh)
    • SUMMARY: cannot su to root
      ... Thanks to Charles Ballowe and Mandell Degerness for their responses. ... inadvertently changed the suid bit on /usr/bin/su while restoring some ...
      (Tru64-UNIX-Managers)