Hello there,
when trying to boot another machine using the knoppix-terminalserver
with activated "secure-mode" (Flag for "Secure: Disable root access on
clients"), I still get complete root access on the network-booted
client-machine (sudo, root-console, ...).
The kernel-parameter "secure" is set, and the NFS-Share gets mounted (to
/cdrom) with the "nosuid" option. Unfortunatelly that does not really
achieve anything.
The cloop-device (mounted to /KNOPPIX) and the union-fs (at /UNIONFS)
get mounted without the option, so that all files retain their suid-flags.
I tried this with Knoppix-5.0.1-DE and Knoppix-4.0.2-DE. It's the same
in both cases.
Is this feature broken? Does it work for anyone else? Am I completely
missing something? Any hints?
Thanks,
Greg

(2) Seagate SAS Hard Drive Exos 7E8 3TB 7200RPM 128MB 12Gb/s 3.5 ST3000NM0035
$49.99
Seagate BarraCuda ST3000DM008 3TB Internal SATA 6Gb 3.5" Hard Drive 7200RPM 64MB
$91.99
Dell EMC WD-HITACHI H5H72101CLAR10T0 10TB 7.2K SAS 12Gb/s SED 3.5in A POH 0-50k
$189.99
WD Ultrastar DC HC530 14TB SATA 6G 3.5" 7200RPM Enterprise HDD - WUH721414ALE604
$329.99
Seagate ST500DM009 BarraCuda 500 GB 3.5" SATA III Desktop Hard Drive
$14.99
Toshiba MG04ACA400 4TB 3.5-inch SATA 6 Gb/s 7,200 RPM Internal Hard Drive
$49.99
Seagate ST28000NM001C 28TB 256MB 7200RPM 3.5" SATA 6.0Gb/s Enterprise Hard Drive
$669.99
Toshiba 14TB MG07 MG07ACA14TEY 7.2K RPM SATA 6Gb/s 512e 3.5" Enterprise HDD
$299.00
Seagate 6TB HDD ST6000NM0034 7.2K 3.5" SAS 12Gb/s (NOT FOR PC - FOR SERVER ONLY)
$87.00
HDD 3.5" SATA Hard Drive with Windows 10/Win 11 64x Installed Legacy
$35.00