> So should I set the shell to /bin/false for all accounts > that shouldn't allow a tty or console login? That would > include postgres, mail, www-data, daemon, bin, sys, > man, games, lp, uucp, backup, operator, nobody... > For that matter, can some of these be safely deleted?
<snip> Check the archives of this list for a discussion of this topic from about 2-3 months ago (not sure of the date really though...). One of the package maintainers brought this up and it turned into quite an active thread as I recall. Hall