On 05/06/2017 09:54 AM, Didier Kryn wrote:
> Le 05/05/2017 à 15:24, Lars Noodén a écrit :
[snip]
>> I haven't seen this before. What should I change to have XFCE require a
>> password each time I launch the Root Terminal icon.
>
> This message is typical of Policykit's self propaganda. sudo's
> messages are different.
>
> Policykit is a server-based system intended to grant you permissions
> without ressorting to the traditional unix mechanisms - same idea as
> ssh-agent, but more generic and complicated.
>
> Policykit's configuration is yet another pseudo-language you have to
> learn unless you can get rid of it, which is hard to do completely :-(
>
> Didier
Ok. Thanks. I'll dig in that direction. Based on this and many other
incidents, policykit seems to be a big, gaping security hole. I expect
that it is also quite difficult to extricate from jessie.
/Lars