Gentoo Archives: gentoo-user

From: Thomas Sigurdsen <thomas.sigurdsen@×××××.com>
To: gentoo-user@l.g.o
Subject: [gentoo-user] Root password, keys, and authentication
Date: Fri, 14 Mar 2014 17:31:52
Message-Id: 53233CF4.6090007@gmail.com
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA1
3
4 Hi list.
5
6 I have for some time now been trying to avoid using passwords as much as
7 possible, preferring encryption keys instead (e.g. public private key
8 encryption like gpg and such). I have also started using longer
9 randomised passwords I shouldn't remember; storing them instead in a
10 safe place (e.g. encrypted memory card or flashdisk).
11
12 So when setting up a new Gentoo machine today and being about to enter a
13 new root password I found myself wanting a way of doing authentication
14 through some other means than remembering a password, like gpg or
15 certificates. Does this exist; and if anyone has had experience with it,
16 is it worth the hassle? And if this is a bad way of doing root
17 authentication, why/how?
18
19 Also the machine in question will have more than one user and a subset
20 of the users shall have access to the root account.
21 - --
22 Thomas Sigurdsen
23 browniehive.net
24 -----BEGIN PGP SIGNATURE-----
25 Version: GnuPG v2.0.22 (GNU/Linux)
26 Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
27
28 iQEcBAEBAgAGBQJTIzzwAAoJEMUjE08Xv1s5uoAH/3v9b2LjOu2HFsCgjcThFFrn
29 00bnxQRTsxLrtnltF6UKF0GBS3cs6vNRTevVCX9t8xOBRD8/ATp83U/tzx0EgYVP
30 6LItUcbwdv41IcmVcPYqu8AzNRDyaUQswh8KV7Cpq3IPbhYkn5CkOlVorWEZxDrn
31 veuBJ7FEGHDppJDkdSAfNGlhtOL1UphuVy4M024NliGbNVqGgeo/42mmg21mLayG
32 js/5fG2NkT+Zgi59UY6+NHk08r6qk5qjhWXlsPjMrbGKaX483nNwLFHFxA8bNB6H
33 cZqB7GOxDlXi7dtcbBA3YRn1yKUtCDDiT8Gk/mKvTaiZtsORToAoinaxrT0y/Zo=
34 =iGQn
35 -----END PGP SIGNATURE-----

Replies