From f2738c399dffe325b5add7b912d9562484f071e3 Mon Sep 17 00:00:00 2001 From: unitexe Date: Sat, 3 Jan 2026 15:23:38 -0600 Subject: Introduce core-image-unit - Add unitexe user - Configured for public key authentication SSH - Part of sudoers (via drop-in) so admin tasks can be performed - No root login via SSH or TTY allowed - TTY is restricted via PAM - Added misc. utilities --- meta-unit-core/recipes-extended/shadow/shadow-securetty_%.bbappend | 4 ++++ 1 file changed, 4 insertions(+) create mode 100644 meta-unit-core/recipes-extended/shadow/shadow-securetty_%.bbappend (limited to 'meta-unit-core/recipes-extended/shadow') diff --git a/meta-unit-core/recipes-extended/shadow/shadow-securetty_%.bbappend b/meta-unit-core/recipes-extended/shadow/shadow-securetty_%.bbappend new file mode 100644 index 0000000..9d17d9b --- /dev/null +++ b/meta-unit-core/recipes-extended/shadow/shadow-securetty_%.bbappend @@ -0,0 +1,4 @@ +do_install:append() { + # Empty securetty to disallow root login on all TTYs. + echo -n > ${D}${sysconfdir}/securetty +} -- cgit v1.2.3