Comment 3 for bug 68274

Revision history for this message
Andreas Jellinghaus (tolonuga) wrote :

I don't see how your reply has anything to do with the bug report.

Servers reachable via network only have a huge problem, if they are booted into "single" user mode.
Without any console or noone near a console such a server is dead and the only way to "fix" the problem
would be a hard power cycle. but there is an easy fix: start ssh daemon.

strength of root passwords, sudo and all that are not part of the problem. my personal preference is using ssh
rsa keys with smart cards only, yours might be different. the "with nologin file" is a suggestion from my side,
su that the result is a "single user" mode - only root can login. if you want a different security policy, that is
possible, but outside the scope of this bug report.

the runlevel assignment seems to be hard coded (postinst always runs update-rc.d with fixed parameters), so
this is not configureable and the default bites a number of uses with a valid use case. thus I suggest a change.

Regards, Andreas