[Linux-disciples] can't root

Adam Kessel linux-disciples@bostoncoop.net
Sat, 22 Nov 2003 11:52:28 -0800


--qMm9M+Fa2AknHoGS
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Oh, sorry for not being clearer.  You need:

kernel /boot/vmlinuz-2.4.22-1-k7 root=3Ddev/hda1 ro init=3D/bin/sh

i.e., the init line needs to go on the kernel line, not the boot line.  I
guess I said 'boot' when I meant 'kernel'.

On Sat, Nov 22, 2003 at 12:39:22PM -0600, Karl Sokol wrote:
> Adam wrote:
>=20
> >>There are many security concerns unrelated to the Internet...
>=20
> Points well taken.
>=20
> >You need to add init=3D/bin/sh to your boot line.  This is done slightly
> >differently in lilo or grub; I think it's easier in grub.  You hit 'e' to
> >edit the boot line, then add init=3D/bin/sh to the end of the line, then
> >hit 'b' to boot.
>=20
> My grub looks like this,
>=20
> root (hd0,0)
> kernel /boot/vmlinuz-2.4.22-1-k7 root=3Ddev/hda1 ro
> initrd /boot/initrd.img-2.4.22-1-k7
> save default
> boot init=3D/bin/sh
>=20
> However, the last line didn't seem to do much.  I.e the same warning come=
s=20
> up.  Any further ideas?  Thanks.
>=20
>=20
> >>My desktop is not attatched to the net and is in my
> >>bedroom, so security isn't a big concern to me on this
> >>machine.  So, I did chmod 777 *.  Now at startup, I
> >>get "Starting Open BSD Secure Shell server:sshd @@@@@@
> >>Warning: UNPROTECTED PRIVATE KEY FILE! @@@@
> >>Permissions 0777 for /etc/ssh/ssh_host_rsa_key are too
> >>open."  The same for dsa_key.
> >>
> >>So, now I can't do any root stuff to harden the
> >>permissions (like logging in on root, su, sudo, chmod
> >>etc.).  A bit of an ironic catch-22.
> >>
> >>Any suggestions?
> >
>=20
> _______________________________________________
> Linux-disciples mailing list
> Linux-disciples@bostoncoop.net
> http://bostoncoop.net/mailman/listinfo/linux-disciples

--=20
Adam Kessel
http://bostoncoop.net/adam

--qMm9M+Fa2AknHoGS
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (GNU/Linux)

iD8DBQE/v758dTf3ZklQ6qYRAqfyAJ9ZU5XNKvQ5vMzL1HVDdjiDQQeJkACeM2iu
sdKby+jbnX1Q5Fpza2Ns2Nk=
=ZMGm
-----END PGP SIGNATURE-----

--qMm9M+Fa2AknHoGS--