Subject: Re: reboot via control-alt-delete?
To: Brook Milligan <brook@biology.nmsu.edu>
From: D'Arcy J.M. Cain <darcy@druid.net>
List: port-i386
Date: 01/18/2000 13:19:25
Thus spake Brook Milligan
>    That's correct.  Although I could give my boss a login, and it appears
>    that this might be the only solution, it seems a kludge, especially
>    since other PC unixes (oh, linux for instance,) have no problem with
>    accepting a three-finger salute to shut the machine down, configurable,
>    of course...
> 
>    There's already hooks to get into ddb and shift virtual consoles -- why
>    not reboot the machine?  (or run arbitrary programs?)
> 
> Wouldn't that be a serious security problem.  I'm not sure I want
> anyone with physical access to a machine to be able to reboot it into
> single user mode or run arbitrary programs!  

Someone with physical access can already do this, just more destuctively.
Also, by "arbitrary" I'm sure he meant as configured by the system owner,
not giving users the ability to run arbitrary programs.

> Furthermore, it complete negates the possiblity of actually using the
> machine for anything other than processes with a short lifetime
> started on the console.  I couldn't rely on the presence of another
> machine on the net for long enough to run anything substantial on, for
> example, if it could be rebooted at any moment at any whim.

Which is why it needs to be configurable.

-- 
D'Arcy J.M. Cain <darcy@{druid|vex}.net>   |  Democracy is three wolves
http://www.druid.net/darcy/                |  and a sheep voting on
+1 416 425 1212     (DoD#0082)    (eNTP)   |  what's for dinner.