Results 1 to 6 of 6

Thread: How to avoid chrome store password in seahorse?

  1. #1
    Join Date
    Jul 2006
    Location
    Uruguay
    Beans
    23
    Distro
    Ubuntu

    How to avoid chrome store password in seahorse?

    Hello,

    I am very concerned about the unencrypted passwords saved by chrome in seahorse.

    This equipment is shared and used by several people, so any user with the root password can change my user password and copy all passwords stored in seahorse. The password to unlock seahorse is the same password i use to login the unity session.

    I have chrome under password to protect my profile ( i have activated the new chrome profile management and now i can use password for private use and protect all my data) but seahorse has stored all passwords in a file.

    There must be some way to prevent passwords from being stored in seahorse (NOT ENCRYPTED)

    Why the passwords seahorse save are visible and aren't encrypted with MD5?

    Thanks.-

  2. #2
    Join Date
    Nov 2013
    Location
    On the edge
    Beans
    872
    Distro
    Ubuntu

    Re: How to avoid chrome store password in seahorse?

    This equipment is shared and used by several people, so any user with the root password can change my user password and copy all passwords stored in seahorse. The password to unlock seahorse is the same password i use to login the unity session.
    It's functioning exactly as its designed. The keyring is unlocked when a user logs in. If all your users use the same account, then your keyring is unlocked for them all.

    If you want several people using the machine then create a user account for each user. They'll each get their own home folder where their own keyring will be stored. You can put the users in the sudo group to allow certain or all root functions.

    If you give all the users the root password, then you can't hope to control anything they do.

    md5 is a hashing algorithm, it is not encryption. You should not consider a hash to be secret.
    Knock knock.
    Race condition.
    Who's there?

  3. #3
    Join Date
    Jul 2006
    Location
    Uruguay
    Beans
    23
    Distro
    Ubuntu

    Re: How to avoid chrome store password in seahorse?

    Hello,

    Each user has their own account of course, but users with root password can change every user account password and login their session and unlock the seahorse.

    Thank you.-

  4. #4

    Re: How to avoid chrome store password in seahorse?

    Each user has their own account of course, but users with root password can change every user account password and login their session and unlock the seahorse.
    Why does each other have root access?
    Learning is not attained by chance, it must be sought for with ardor and attended to with diligence. Abigail Adams ( 1744 - 1818 ), 1780;

    My blog Poetry and More Free Ubuntu Magazine

  5. #5
    Join Date
    Jul 2006
    Location
    Uruguay
    Beans
    23
    Distro
    Ubuntu

    Re: How to avoid chrome store password in seahorse?

    Hello,

    Because it's a shared PC and the idiot of my manager insist each users (and of course he) must have root password...

    thanks.-

  6. #6
    Join Date
    Nov 2013
    Location
    On the edge
    Beans
    872
    Distro
    Ubuntu

    Re: How to avoid chrome store password in seahorse?

    Quote Originally Posted by marceloramone View Post
    Each user has their own account of course, but users with root password can change every user account password and login their session and unlock the seahorse.
    Yes. Again, functioning exactly as designed. Root sees all.
    Knock knock.
    Race condition.
    Who's there?

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •