Subject: Re: su(1) group wheel restriction
To: None <tech-userlevel@NetBSD.ORG, bad@flatlin.ka.sub.org>
From: Wolfgang Solfrank <ws@kurt.tools.de>
List: tech-userlevel
Date: 01/10/1997 14:00:19
> mynhier@cs.utk.EDU (Chad Mynhier) writes:
> >	What is the difference between adding a user to /etc/su.conf
> >and adding the user to the wheel group?
> 
> The former doesn't give that user write access to wheel owned files
> and directories.

Huh?  Those users can su, so they can do anything to your system anyway,
including write to wheel owned files.  OK, they'd have to su first, which
they don't need in the other case, but they'd even be able to remove any
traces of this in most cases if they really wanted.
--
ws@TooLs.DE     (Wolfgang Solfrank, TooLs GmbH) 	+49-228-985800