gpsd-dev
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: ✘"Sudo? Sudon't!" and "Saving U-blox Configuration"


From: Bernd Zeimetz
Subject: Re: ✘"Sudo? Sudon't!" and "Saving U-blox Configuration"
Date: Fri, 15 Jan 2021 16:03:17 +0100
User-agent: Mozilla/5.0 (X11; Linux x86_64; rv:78.0) Gecko/20100101 Thunderbird/78.6.0


On 1/15/21 3:15 AM, Gary E. Miller wrote:
>     "Sudo? Sudon't!"
> 
>         https://gpsd.io/ubxtool-examples.html#_sudo_sudont

lines like

sudo is "Security Theater". Having sudo enabled on a computer makes it
demonstrably less secure.
If you must be root, then become, and stay root. Just sudon’t.


are your personal opinion and have nothing to do with gpsd. Nothing that
should be in a documentation about gpsd. I'm sure there is some linux
best practices book where they belong into.


Instead I'd suggest that you check the uid in ubxtool and fail if
somebody tires to run it as root, maybe add a --yes-i-know-what-i-do
flag to force running it as root.




-- 
 Bernd Zeimetz                            Debian GNU/Linux Developer
 http://bzed.de                                http://www.debian.org
 GPG Fingerprint: ECA1 E3F2 8E11 2432 D485  DD95 EB36 171A 6FF9 435F



reply via email to

[Prev in Thread] Current Thread [Next in Thread]