On a server I have a public key auth only for root account. Is there any point of logging in with a different account?

  • 4am@lemm.ee
    link
    fedilink
    arrow-up
    3
    arrow-down
    5
    ·
    4 days ago

    Then you can’t gain root privileges on your server. Are you really arguing for less security because it’s inconvenient?

    This is end-user behavior and it’s honestly embarrassing. You should realize your security posture is much more important than “I left my phone on the other room”

    • slothrop@lemmy.ca
      link
      fedilink
      English
      arrow-up
      6
      arrow-down
      2
      ·
      4 days ago

      This thread is embarrassing,
      The person you’re responding to could wipe your ass with a cli.

    • miss_demeanour@lemmy.dbzer0.com
      link
      fedilink
      English
      arrow-up
      5
      arrow-down
      3
      ·
      4 days ago

      ffs…am I dealing with children here?
      You’ve accessed your server as a user, and then you su - to root.
      You don’t need a phone or a yubi or a dreamcatcher, or a unicorn.
      Please stop with your pretension.
      You’re so far out of your league that it’s embarrassing to me that I’ve bothered to answer.

      • JasonDJ@lemmy.zip
        link
        fedilink
        arrow-up
        2
        arrow-down
        1
        ·
        edit-2
        3 days ago

        There must at least be MFA somewhere on the path then.

        Even just keys, I wouldn’t trust, unless they are stored on smartcards or some other physical “something I have”, require a PIN/passphrase. and centrally managed so they can be revoked and rotated. Too many people use unprotected SSH keys.