Lock Down Your Root User
TMO Quick Tip - Lock Down Your Root User
by , 7:30 AM EDT, September 24th, 2007
Mac OS X may sport a friendly user interface, but it is harboring a Unix core underneath. That means the security steps Unix pros take can apply to regular Mac users as well including making sure that root, the ultimate power user on your computer, is under your control and no one else's.
By default, the root user on your Mac is disabled, but it doesn't have a password set, which is a potential security weak point. Setting a password makes it that much more difficult for bad guys to try to hack into your Mac.
I added a password to my root user account, and I also keep that user disabled. Here's how:
- Launch NetInfo Manager. It's in Applications/Utilities.
- Click the padlock in the NetInfo Manager window and enter your administrator user name and password.
- Choose Security > Enable Root User.
- You should see an alert dialog telling you that your root user password is blank. Click OK.
- Enter a password for your root user. Make sure it isn't a password that you are already using for another account on your Mac. Now click OK.
- Choose Security > Disable Root User.
- Enter your administrator user name and password and click OK.
- Click the padlock in the NetInfo Manager window to prevent any other changes.
![]() NetInfo Manager |
|---|
![]() Enable your root user. |
|---|
![]() Your Mac lets you know if you haven't set a root password yet. |
|---|
![]() Enter a unique password for your root user. |
|---|
![]() Disable your root user. |
|---|
Locking down your root user is important because anyone that gains root access to your Mac can do anything they want including deleting files or user accounts, installing applications without your knowledge, and siphoning off any information they want from your hard drive. That isn't likely to happen, but taking steps to help insure that it won't happen is a pretty good idea.
Jeff Gamet is TMO's Morning Editor and Reviews Editor. He lectures, teaches and speaks on Mac OS X and design-related topics, and is the author of The Designer's Guide to Mac OS X from Peachpit Press.
if you have tips or tricks to share, or Mac-related questions you want answered.
Observer Comments
Mon Sep 24, 2007 11:51 am Subject: Good question, guest.
QuoteGuest wrote:
what happens if you forget your root user password. Is it kept in keychain?
No, it is not kept in any keychain. If you forget it, you have to boot to an OS X install CD and reset it. You can do that for any local OS X user account. If you're concerned about this ability, you should have an Open Firmware password that prevents booting from CD or any external device without [yet another] password.
Mon Sep 24, 2007 6:59 pm Subject:
Comments are currently closed. Please email the author instead.
Recent Headlines - Updated February 12th
- Sat, 4:11 PM
- MacOS KenDensed - MacOS KenDensed: iPad 3 Frenzy, Big-time Apple & Steve Jobs, G-Man
- Fri, 8:10 PM
- News - Apple Sues Motorola Mobility in California Over German Case
- 7:54 PM
- Free on iTunes - OnLive Desktop: Windows & Office on Your iPad
- 7:43 PM
- Product News - Apple Rolls Out MacBook Air Configurations for Education
- 6:35 PM
- Just a Peek - Battle Pocket Bulge With The Hint for iPhone
- 6:01 PM
- Rumor - Apple Reportedly Bringing MacBook Air Styling to Pro Line
- 4:50 PM
- Particle Debris - The Hidden Gotchas of Browser Security
- 3:56 PM
- Apple Stock Watch - Analyst: Paying a Dividend Makes Sense for Apple
- 2:58 PM
- Deal Brothers - iMac 27-inch 2.93GHz Intel Quad-Core i7 processor: $1,999
- 2:45 PM
- In-Depth Review - Theodolite App for iOS is Breathtaking
- 12:52 PM
- Apple Stock Watch - Mizuho Securities Starts Apple Coverage with $635 Target
- 11:35 AM
- Hot Forum Topic - Forum Poll: Are You Planning on Buying a New iPad?
The Mac Observer Reader Specials
TypeStyler 11 is now in the Mac App Store!! -- Special Introductory Price of $59.95!! -- To Buy From The Mac App Store Click Here Now!! Or buy direct
from Strider Software.
Mac RAM Upgrades: MacBook Pro 16GB kits $475, 8GB Kits for $119.99! iMac 16GB RAM Kits (4x 4GB) for $229.99! Mac Pro Memory 32GB Kit for $399.99, 64GB Kit for $889.99! Mac Hard Drives 2TB Seagate SATA II for $249.99! Click Here!
If you're using a Mac, then you've gotta check out Online Poker Mac.
This mac poker and online casino mac site
actually does the unthinkable, it actually rewards!





