File: 6.html

package info (click to toggle)
lg-issue65 2-1
  • links: PTS
  • area: main
  • in suites: sarge
  • size: 3,780 kB
  • ctags: 230
  • sloc: sh: 201; perl: 133; makefile: 34
file content (321 lines) | stat: -rw-r--r-- 12,824 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
<!--startcut ======================================================= -->
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<html>
<head>
<META NAME="generator" CONTENT="lgazmail v1.3E.t">
<TITLE>The Answer Gang 65: BIOS passwords - Bane of my existance</TITLE>
</HEAD><BODY BGCOLOR="#FFFFFF" TEXT="#000000"
	LINK="#3366FF" VLINK="#A000A0">
<!-- ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: -->
<P> <hr> 
<CENTER>
<!-- *** BEGIN navbar *** -->
<!-- *** END navbar *** -->
</CENTER>
</p>
<P> <hr> <P>
<!-- ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: -->
<center>
<H1><A NAME="answer">
	<img src="../../gx/dennis/qbubble.gif" alt="(?)" 
		border="0" align="middle">
	<font color="#B03060">The Answer Gang</font>
	<img src="../../gx/dennis/bbubble.gif" alt="(!)" 
		border="0" align="middle">
</A></H1> 
<BR>
<H4>By Jim Dennis, Ben Okopnik, Dan Wilder, Breen, Chris, and the Gang,
	the Editors of Linux Gazette... 
	and You!
<br>Send questions (or interesting answers) to
	<a href="mailto:linux-questions-only@ssc.com">linux-questions-only@ssc.com</a>
</H4>
<p><em><font color="#990000">There is no guarantee that your questions
	here will <b>ever</b> be answered.  You can be published anonymously 
	- just let us know!
</font></em></p>
</center>

<p><hr><p>
<!--  endcut ======================================================= -->
<!-- begin 6 -->
<H3 align="left"><img src="../../gx/dennis/qbubble.gif" 
	height="50" width="60" alt="(?) " border="0"
	>BIOS passwords - Bane of my existance</H3>


<p><strong>From Unidentified Querent 
</strong></p> 
<p align="right"><strong>Answered By Ben Okopnik, Heather Stern
<br></strong></p>

<P><STRONG>
Can I send the Answer Gang a question and ask that I not be identified?
PLEASE??? Reason: I feel stoopid enough already. Hey, you may decide
that it isn't even a good idea to print this one. I doubt I would...
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Ben]
You really have no reason to feel stupid. Not knowing something does not
equate to being stupid; as I tell the students in my classes, "educated is
what you're supposed to be when you come out, not when you come in."
However, I don't think that there will be any problem with honoring your
request: Heather, the TAG's Answer Gal, scrubs off the e-mail addresses
anyway, and I've already removed your name.
</BLOCKQUOTE>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
Yes. I can strip anybody who wants down to <em>anonymous</em> and I already
make a sincere effort to scrub company references, etc from most things.
Someotimes it matters (like when someone is a spokesperson for the
company of a product we're talking about) but usually it is cruft and
gets cut.
</BLOCKQUOTE>
<BLOCKQUOTE>
As Editor Gal I can make sure this thread is scrubbed thorughly of your
identity, and will.
</BLOCKQUOTE>
<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
It's really TWO questions but the second question is not necessary if
you have an answer to the first (which I doubt).
</STRONG></P>
<P><STRONG>
(1)
I read your "LILO:Password Protected Entries" article in the new
March LinuxGazette. Though I do not have a LILO question, I'd like to
ask you to follow up on something else you touched on in that article.
</STRONG></P>
<P><STRONG>
One of my toys is a CTX EzBook 800 laptop which is currently running
<A HREF="http://www.suse.com/">SuSE</A> 7. A while back, I thought it would be a good idea to block access
to "Lorraine's" BIOS settings. I set the BIOS password so that access to
the BIOS is blocked but booting is not. Good thing. I soon forgot the
password.
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
Ut oh.  This is below the scope Linux can probably help with, but read on.
</BLOCKQUOTE>
<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
This isn't a HUGE problem since I don't have to access the BIOS very
often but booting from a CDROM is now impossible (without using a boot
floppy) and setting or correcting local time is a real pain in the rump
(see question 2).
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
have you tried setting Linux' date and then:
<br><tt>hwclock --systohc</tt>
</BLOCKQUOTE>
<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
I know BIOS backdoors exist but I've been unable to find one for mine.
</strong></p>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
<TT>/dev/nvram</TT> maaaaybe.  Unfortunately it's laced with some righteous warnings
and most people use it by figuring out what to do with it when they <EM>have</EM>
normal BIOS access.
</BLOCKQUOTE>

<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
Lorraine's got a PhoenixBIOS 4.0 Release 6.0.67A dated 1985 - 1997. In
the year or so since I got stoopid, I've scoured the Internet for info
on what the Phoenix backdoor might be - I found nothing. I even
contacted the manufacturer, CTX, to see if they would help. All they
would suggest was popping open the laptop and removing the BIOS battery,
something I'm not sure I'd do even if I knew how to (yeah, I know I'm a
wimp).
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
Opening the laptop may be tricky.  The usual rule is There Are Lots Of
Tiny Screw To Get Lost.  Taking notes and not making sudden moves while
it's half open (so you can see where plastic traces are plugged in before
yanking them loose carefully) are both good.
</BLOCKQUOTE>
<BLOCKQUOTE>
But the BIOS is usually a watch battery and about as easy to deal with as
a watch once you have it.
</BLOCKQUOTE>
<BLOCKQUOTE>
You may want to get printouts and take notes during bootup of things that
are BIOS options as far as you know them.  dmesg may help some.
</BLOCKQUOTE>
<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
So... The questions remain: Do you know how to foil this sucker or,
failing that, can you
</STRONG></P>
<P><STRONG>
(2)
Tell me how to reset the BIOS time from within SuSE 7? That'd be a
piece of cake with RedHat's linuxconf but I've yet to find anything in
SuSE that would do the trick. Don't even ask about yast and yast2...
Change time zone, yeah. Change time, no way.
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
Ah yes, this would be the hwclock command I gave above.  You have to be
root to use it.
</BLOCKQUOTE>
<BLOCKQUOTE>
As for linuxconf, err, I haven't had good luck with it myself.  YaST
(yess, that's really how the command is spelled) is the admin tool
under SuSE, but as you can see, it's really more about installing
stuff, not so much for sysadmin work.
</BLOCKQUOTE>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Ben]
Take a look at the 'cmostool' utility
&lt;<A HREF="http://www.ibiblio.org/pub/Linux/hardware/?M=A&gt"
	>http://www.ibiblio.org/pub/Linux/hardware/?M=A&gt</A>;. It allows you to back up,
modify,  hex dump, etc. the CMOS - as well as deleting the whole thing
(which wipes out the password.)
</BLOCKQUOTE>
<BLOCKQUOTE>
!!! WARNING WARNING WARNING !!!
</BLOCKQUOTE>
<BLOCKQUOTE>
Do not do this if you don't know what you're doing! Wiping your CMOS
<EM>will</EM> make your system unbootable. You must know at least the CHS
(cylinder-head-sector) values for your hard drive, and either know or be
able to figure out the other necessary settings. If you dump your CMOS and
get stuck, you are on your own!
</BLOCKQUOTE>
<BLOCKQUOTE>
Now that I've scared you into twitching fits and heebie-jeebies...
</BLOCKQUOTE>
<BLOCKQUOTE>
Most BIOSs today are auto-configuring, and will either auto-detect or give
you the option of auto-detecting your HD; Phoenix BIOS certainly does that
(it's been my favorite for many years now.) For myself, if I'm going to do
that sort of thing - and I've worked on many, many machines where the
owner had set a BIOS password and forgot it - I'll boot DOS, save a copy
of the settings to a bootable floppy via 'savecmos', and only then blow
away the password via 'cmosedit'. That way, if things go truly awry, I can
at least get back to where I was and try something else. The 'savecmos'
utility (including 'cmosedit') is available all over the Net, e.g.
&lt;<A HREF="http://members.tripod.co.uk/paulc/cmosutil.zip&gt"
	>http://members.tripod.co.uk/paulc/cmosutil.zip&gt</A>;.
</BLOCKQUOTE>
<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
P.S.: I bought this laptop new from Sears (don't laugh) and have the
receipt and everything. Honest!
</STRONG></P>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Ben]
I will be <EM>certain</EM> to stop by and check up on you. Have them ready, and
be afraid. Be <EM>very</EM> afraid. 
<IMG SRC="../../gx/dennis/smily.gif" ALT=":)" 
		height="24" width="20" align="middle">
</BLOCKQUOTE>
<BLOCKQUOTE><IMG SRC="../../gx/dennis/bbub.gif" ALT="(!)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	> [Heather]
Cool.  Makes it lots easier to insure and all.  It's entirely a side
note, but <A HREF="http://www.mobilix.org"
	>http://www.mobilix.org</A> has a nice list of laptop resources.
</BLOCKQUOTE>

<P><STRONG><IMG SRC="../../gx/dennis/qbub.gif" ALT="(?)"
	HEIGHT="28" WIDTH="50" BORDER="0"
	>
Thanks!!!
<br>Signed: Stoopid
</STRONG></P>

<!-- end 6 -->
<!--startcut ======================================================= -->
<P> <hr> </p>
<!-- *** BEGIN copyright *** -->
<H5 align="center">This page edited and maintained by the Editors
        of <I>Linux Gazette</I>
<a href="http://www.linuxgazette.com/copying.html"
        >Copyright &copy;</a> 2001
<BR>Published in issue 65 of <I>Linux Gazette</I> April 2001</H5>
<H6 ALIGN="center">HTML script maintained by
        <A HREF="mailto:star@starshine.org">Heather Stern</a> of
        Starshine Technical Services,
        <A HREF="http://www.starshine.org/">http://www.starshine.org/</A>
</H6>
<!-- *** END copyright *** -->
<P> <hr> 
<!-- begin tagnav ::::::::::::::::::::::::::::::::::::::::::::::::::-->
<p align="center">
<table width="100%" border="0"><tr>
<td align="right" valign="center"
	><IMG ALT="" SRC="../../gx/navbar/left.jpg"
        WIDTH="14" HEIGHT="45" BORDER="0" ALIGN="middle" border="0"
><A HREF="..//"
	><IMG SRC="../../gx/navbar/toc.jpg" align="middle"
              ALT="[ Table Of Contents ]" border="0"></A
><A HREF="../lg_answer65.html"
	><IMG SRC="../../gx/dennis/answertoc.jpg" align="middle"
              ALT="[ Answer Guy Current Index ]" border="0"></A></td>
<td align="center" valign="center"><A HREF="../lg_answer65.html#greeting"><img align="middle"
	src="../../gx/dennis/smily.gif" alt="greetings" border="0"></A> &nbsp;
  <A HREF="1.html">1</A> &nbsp;
  <A HREF="2.html">2</A> &nbsp;
  <A HREF="3.html">3</A> &nbsp;
  <A HREF="4.html">4</A> &nbsp;
  <A HREF="5.html">5</A> &nbsp;
  <A HREF="6.html">6</A> &nbsp;
  <A HREF="7.html">7</A> &nbsp;
  <A HREF="8.html">8</A> &nbsp;
  <A HREF="9.html">9</A> &nbsp;
  <A HREF="10.html">10</A> &nbsp;
  <A HREF="11.html">11</A> &nbsp;
  <A HREF="12.html">12</A> &nbsp;
  <A HREF="13.html">13</A> &nbsp;
  <A HREF="14.html">14</A> &nbsp;
  <A HREF="15.html">15</A> &nbsp;
  <A HREF="16.html">16</A> &nbsp;
  <A HREF="17.html">17</A> &nbsp;
  <A HREF="18.html">18</A> &nbsp;
  <A HREF="19.html">19</A> &nbsp;
  <A HREF="20.html">20</A> &nbsp;
  <A HREF="21.html">21</A> &nbsp;
  <A HREF="22.html">22</A> &nbsp;
  <A HREF="23.html">23</A> &nbsp;
  <A HREF="24.html">24</A> &nbsp;
  <A HREF="25.html">25</A> &nbsp;
  <A HREF="26.html">26</A> &nbsp;
  <A HREF="27.html">27</A> &nbsp;
  <A HREF="28.html">28</A> &nbsp;
  <A HREF="29.html">29</A></td>
<td align="left" valign="center"><A HREF="../../tag/kb.html"
	><IMG SRC="../../gx/dennis/answerpast.jpg" align="middle"
              ALT="[ Index of Past Answers ]" border="0"></A
><IMG ALT="" SRC="../../gx/navbar/right.jpg" align="middle"
        WIDTH="14" HEIGHT="45" BORDER="0"></td></tr></table>
</p>
<!-- end tagnav ::::::::::::::::::::::::::::::::::::::::::::::::::::-->
<P> <hr> 
<CENTER>
<!-- *** BEGIN navbar *** -->
<!-- *** END navbar *** -->
</CENTER>
</p>
<!-- ::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::::: -->
</BODY></HTML>
<!--endcut ========================================================= -->