Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Indeed, "root" is not a person - only persons should have authorization (to log in, to elevate via su/sudo).

Ed: although in this case the binding between a system user and a person happens at the tailscale level.



"bob" UNIX account is not a person either.

If you ssh in, no matter to what account, your key ID is logged and that's what matters.

Anything can happen afterwards, unless you have a really tight grip on your system, since local privilege escallations are not that hard or uncommon.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: