Solved

Preventing Root Login

Posted on 2008-10-20
4
535 Views
Last Modified: 2013-12-16
I inherited a Redhat Linux system to administer.  While I'm nobody's Sysadmin (network is my thing) - I do know that direct login using "root" is generally a no-no.  Right?  That's how the previous owner would SSH to the box - using "root" for user name.  How do I prevent direct access with "root" and but make sure I don't log myself out of any essential access.  My guess is first I can log in with my own UID and su to root and make sure that is all cool.  (It is.)  But then how do I prevent direct root login?
0
Comment
Question by:amigan_99
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 5

Expert Comment

by:Tuxx
ID: 22759376
Logging in as root in GUI i usually prohibited by most distros. However, in the bootloader it is allowed. You will need to enter the GRUB prompt and follow the instructions on the page to lock access to the CLI root boot entry.
http://www.gnu.org/software/grub/manual/html_node/Security.html
0
 
LVL 29

Expert Comment

by:fosiul01
ID: 22759413
check this question :

http://www.experts-exchange.com/Security/Operating_Systems_Security/Linux/Q_23604111.html

you can use key authentication instead of using direct root access by ssh
0
 
LVL 8

Accepted Solution

by:
StrongBad_Rules earned 250 total points
ID: 22759424
There are a variety of ways to answer that question, but here is a good place to start:
http://www.redhat.com/docs/manuals/linux/RHL-9-Manual/security-guide/s1-wstation-privileges.html

0
 
LVL 1

Author Closing Comment

by:amigan_99
ID: 31507878
Perfect - thank-you.
0

Featured Post

Don't Cry: How Liquid Web is Ensuring Security

WannaCry is just the start. Read how Liquid Web is protecting itself and its customers against new threats.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will explain how to establish a SSH connection to Ubuntu through the firewall and using a different port other then 22. I have set up a Ubuntu virtual machine in Virtualbox and I am running a Windows 7 workstation. From the Ubuntu vi…
BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.

691 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question