Security Basics mailing list archives

Re: FW: Root account desactivated


From: Iván Eguiguren <ivan.eguiguren () educ mec es>
Date: Wed, 17 Mar 2004 14:51:56 +0100

I should boot from a live-cd and mount the partition in read/write mode
as I could change files in it. Just change back the /etc/passwd line,
umount, and reboot... voi-là.

El vie, 12-03-2004 a las 01:43, Jimmy Godbout escribió:
Hi,

Have you tried to use the rescue feature of RH to boot the machine and then
change the line to the right value ?

Regards,

-----Original Message-----
From: MARTIN M. Benoni [mailto:benoni_martin () hotmail com]
Sent: March 11, 2004 09:48
To: security-basics () securityfocus com
Subject: Root account desactivated


Hi community!

I have a really stupid trouble: on a Redhat 9.0, the line matching the root
account in the file /etc/passwd has been changed from ".../bin/bash" to
".../sbin/nologin". We have the root password, but when performing a "su"
command, the system replies that the account is not currently available.

So the question is: how from an user's account and knowing the root's
password but having the root account disabled can we reactivate this root's
account?

Any suggestion would be appreciated, I do not want to reinstall the box :(

Thanks a lot in advance!

_________________________________________________________________
MSN 8 with e-mail virus protection service: 2 months FREE*
http://join.msn.com/?page=features/virus


---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the
skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------




---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------
-- 
/~\ The ASCII                    
\ / Ribbon Campaign    ivan.eguiguren at educ.mec.es
 X  Against HTML
/ \ Email!

Attachment: signature.asc
Description: Esta parte del mensaje está firmada digitalmente


Current thread: