PackageKit policy: background and plans

Fulko Hew fulko.hew at gmail.com
Fri Nov 20 14:38:43 UTC 2009


On Fri, Nov 20, 2009 at 9:34 AM, Matthew Garrett <mjg at redhat.com> wrote:

> On Fri, Nov 20, 2009 at 04:09:15PM +1100, James Morris wrote:
>
> > Many users limit their use of the root account to essential system
> > maintenance, and run general purpose applications as a regular
> > unprivileged user.
>
> I know basically nobody who, on a generally single user system,
> explicitly switches to a console to log in as root and perform package
> installs there.


I do!  And I tell everyone else too, so they learn/understand the difference
between 'god' and a 'mere mortal user' (ie. root and anyone else).


> If you're not doing that then the issue is basically
> moot - a user-level compromise will become a root-level compromise the
> next time you run anything as root.
>

... snip ...
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/fedora-devel-list/attachments/20091120/ee6c6557/attachment.htm>


More information about the fedora-devel-list mailing list