[SAC] High load "geotools" job on osgeo6: cryptonight at work

Sandro Santilli strk at kbt.io
Thu May 10 06:59:50 PDT 2018

On Thu, May 10, 2018 at 03:41:08PM +0200, Markus Neteler wrote:
> On Thu, May 10, 2018 at 8:57 AM, J├╝rgen E. Fischer <jef at norbit.de> wrote:
> > On Tue, 08. May 2018 at 23:54:14 +0200, Markus Neteler wrote:
> ...
> > I'd try: members users | xargs -n1 passwd -e
> osgeo6:~$ members users | tr -s ' ' '\n' | wc -l
> 183
> ... truly a multi-user system (*cough*) including funny users like
> "osgeotest123" etc. Hope all come with strong passwords.

It looks like osgeotest123  was registered by Frank Warmerdam
in early October 2007. It is a LDAP entry. I dubt it has a strong
password. The corresponding email is osgeotest123 at gmail.com.

Frank, do you still have access to that mailbox ?
Can we drop that LDAP user ?

Note that there's a known bug that does not allow _removing_
shell access from LDAP users:

Jurgen: locking a password in LDAP requires an extension (an "overlay")
and there's currently nobody assigned to that:


