|
We are using cockpit 220 on a yocto build. |
Replies: 2 comments
|
If a user can click on |
Right, if you provide passwordless root to a user, that user has 100% full control over the system, including editing |
|
We are using cockpit 220 on a yocto build. |
|
If a user can click on |
Right, if you provide passwordless root to a user, that user has 100% full control over the system, including editing |
If a user can click on
administrative accessthey implicitly become superuser/root so they will be able to do any action as "root". Can these users become root via polkit/sudo if so then even giving the option to change the root password makes little sense in terms of security.