Require passwords for sudo #204

Closed
opened 2020-08-30 12:21:45 +00:00 by raucao · 4 comments
Owner

I noticed that, for some reason, we don't require passwords for sudo. This makes things considerably less secure, as it's a good second factor in addition to the SSH key.

I noticed that, for some reason, we don't require passwords for sudo. This makes things considerably less secure, as it's a good second factor in addition to the SSH key.
raucao added the
enhancement
security
labels 2020-08-30 12:22:09 +00:00
Owner

Sounds good to me, assigning myself to this one

Sounds good to me, assigning myself to this one
greg self-assigned this 2020-09-24 12:09:43 +00:00
Author
Owner

Note from call: also disable root SSH via Chef while doing this.

Note from call: also disable root SSH via Chef while doing this.
Author
Owner
https://github.com/emptymonkey/sudo_mitm
Author
Owner

I think we decided to not do this. Correct me if I'm wrong.

I think we decided to not do this. Correct me if I'm wrong.
Sign in to join this conversation.
No Milestone
No project
No Assignees
2 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: kosmos/chef#204
No description provided.