On a server I have a public key auth only for root account. Is there any point of logging in with a different account?

  • JasonDJ@lemmy.zip
    link
    fedilink
    arrow-up
    0
    ·
    9 days ago

    Nah just set up PAM to use TOTP or a third party MFA service to send a push to your phone for sudo privs.

      • 4am@lemm.ee
        link
        fedilink
        arrow-up
        0
        ·
        9 days ago

        Then you can’t gain root privileges on your server. Are you really arguing for less security because it’s inconvenient?

        This is end-user behavior and it’s honestly embarrassing. You should realize your security posture is much more important than “I left my phone on the other room”

        • miss_demeanour@lemmy.dbzer0.com
          link
          fedilink
          English
          arrow-up
          0
          arrow-down
          1
          ·
          8 days ago

          ffs…am I dealing with children here?
          You’ve accessed your server as a user, and then you su - to root.
          You don’t need a phone or a yubi or a dreamcatcher, or a unicorn.
          Please stop with your pretension.
          You’re so far out of your league that it’s embarrassing to me that I’ve bothered to answer.