This is the new home of the egghelp.org community forum.
All data has been migrated (including user logins/passwords) to a new phpBB version.


For more information, see this announcement post. Click the X in the top right-corner of this box to dismiss this message.

root adds himself .. any help?

Old posts that have not been replied to for several years.
Locked
T
Tex
Voice
Posts: 11
Joined: Sat Dec 14, 2002 8:27 pm
Location: Lendava, Slovenia

root adds himself .. any help?

Post by Tex »

hi..first..my english is baad..so don't laught please.. :oops: :P

problem..root adds himself to te userfile as +n by editing the bots userfile and have complete acces to the botnet..this bot is a shared bot..not a hub..
I tried to set the "set private-user" to 1 on hub..but..he can still remove the hubs +p flag and than add himself..and he has again acces to the botnet..via commands like .netjoin .netsay ...

wondering how to fix that..?

tex..
User avatar
user
 
Posts: 1452
Joined: Tue Mar 18, 2003 9:58 pm
Location: Norway

Post by user »

rm -rf ~/

...if you can't trust root, you can't trust a eggdrop running on the box.
p
ppslim
Revered One
Posts: 3914
Joined: Sun Sep 23, 2001 8:00 pm
Location: Liverpool, England

Post by ppslim »

The root user has complete control over a machine. From hardware, software all the way to internet connections and file contents.

With every shell account, you have to trust that the root user, will not tamper with your files, or add himself to your bot.

As noted, if you can't trust them not to do this, then get rid of them.

There is no way at all to prevent the root user from changing the userfile, and adding himself.
T
Tex
Voice
Posts: 11
Joined: Sat Dec 14, 2002 8:27 pm
Location: Lendava, Slovenia

Post by Tex »

well..can I link two bots only with shared userlists?If the hub wouldn't link without sharing - everything would be ok.."set private-user 1" on hub forces all userlist changes to be made via hub..I know that he would still be able to add himself..but than he could control only the bot that runs on his server..I just don't wan't him to have acces to all bots.. :-?
I know what root can do and what can't do.. :P but on this shell I'm not sure if I can trust to all of them (yes..more users have root permissions).. :(
oh dear..god bless my english.. :D :D

tex..
User avatar
Clipped
Halfop
Posts: 73
Joined: Fri Jan 24, 2003 2:27 am

Post by Clipped »

What shell provider is this if you dont mind :) I would like a heads up not to use this provider thats for sure...

Clipped
T
Tex
Voice
Posts: 11
Joined: Sat Dec 14, 2002 8:27 pm
Location: Lendava, Slovenia

Post by Tex »

it's not "shell provider"..my friends server on adsl.. :P
T
Tex
Voice
Posts: 11
Joined: Sat Dec 14, 2002 8:27 pm
Location: Lendava, Slovenia

Post by Tex »

well..still don't know how to fix it.. :roll: :)
p
ppslim
Revered One
Posts: 3914
Joined: Sun Sep 23, 2001 8:00 pm
Location: Liverpool, England

Post by ppslim »

I now realise what is agt issue here.

Please see the "set private-globals" setting. You need the "n" flag listed here.
T
Tex
Voice
Posts: 11
Joined: Sat Dec 14, 2002 8:27 pm
Location: Lendava, Slovenia

Post by Tex »

well..n is there.. :-?
sharing works fine..hub refuses all +m and +n changes..these flags can be changed/added only on hub..

problem is..when someone edit the bot's userfile (editing userfile in shell..not via bot..and not userfile of passive bot)..he can remove the +p flag from passive bot..but the bot still can be linken to te botnet (without userfile sharing)..
now what I need is: hub(passive bot) should link to some bot ONLY if userlist would be SHARED..if userlist wouldn't be shared, hub should diskonect that bot..

that could be fixet with some tcl on hub..

ppslim..thanx for dealing with my problem.. :P :)

tex..
Locked