[ELDK] Permissions on /root directory keep ssh from working properly

Wolfgang Denk wd at denx.de
Wed Nov 12 21:34:17 CET 2008


Dear Phil,

In message <200811100919.47924.pterry at vmetro.com> you wrote:
>
> > > Yes, I mean the user keys.   In a user-less system (i.e. everything is
> > > root, which I suspect is quite common in DENX as in other embedded linux
> > > systems), this doesn't work with the default permissions of 775 on
> > > /root.

Note the permissions we were talking about: 0775 ...

> > If the user is "root", then the files should go into the "/root/.ssh"
> > directory.
> >
> And they do but if /root is writable then you could delete/rename /root/.ssh 
> and replace it with your own directory and files etc. A great big security 
> hole and hence the directory containing .ssh must not be world writable.

Permission 0775 is *not* world writable, though. 

Best regards,

Wolfgang Denk

-- 
DENX Software Engineering GmbH,     MD: Wolfgang Denk & Detlev Zundel
HRB 165235 Munich, Office: Kirchenstr.5, D-82194 Groebenzell, Germany
Phone: (+49)-8142-66989-10 Fax: (+49)-8142-66989-80 Email: wd at denx.de
Extended Epstein-Heisenberg Principle: In an R & D orbit, only  2  of
the  existing 3 parameters can be defined simultaneously. The parame-
ters are: task, time and resources ($).


More information about the eldk mailing list