Picture

Samuel's Website

Deny regular users to have and use privileges

Samuel Forestier — 9 January 2016
I didn't really get this point since I've run for the first time my Pi. If your current user can destroy the system without even typing the root password, what is the meaning of the root account ?

To disable this, connect with root account, and run:
# visudo
As the screenshot above, find the lines which match with your regular account(s), and comment them. This will deny regular user to run commands which need privileges.
#pi ALL=(ALL) NOPASSWD: ALL
I've deleted user from "sudo" group too. If you want:
# gpasswd -d pi sudo