<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Su on Marc JESTIN's Blog</title><link>https://blog.marcjestin.fr/en/tags/su/</link><description>Recent content in Su on Marc JESTIN's Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026</copyright><lastBuildDate>Fri, 08 May 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://blog.marcjestin.fr/en/tags/su/index.xml" rel="self" type="application/rss+xml"/><item><title>How to disable sudo in Debian</title><link>https://blog.marcjestin.fr/en/posts/how-to-disable-sudo-in-debian/</link><pubDate>Fri, 08 May 2026 00:00:00 +0000</pubDate><guid>https://blog.marcjestin.fr/en/posts/how-to-disable-sudo-in-debian/</guid><description>&lt;p&gt;Hello,&lt;/p&gt;

&lt;h2 class="relative group"&gt;Security Best Practices
 &lt;div id="security-best-practices" class="anchor"&gt;&lt;/div&gt;
 
 &lt;span
 class="absolute top-0 w-6 transition-opacity opacity-0 -start-6 not-prose group-hover:opacity-100 select-none"&gt;
 &lt;a class="text-primary-300 dark:text-neutral-700 !no-underline" href="#security-best-practices" aria-label="Anchor"&gt;#&lt;/a&gt;
 &lt;/span&gt;
 
&lt;/h2&gt;
&lt;p&gt;A secure machine is one where just anyone cannot do just anything.&lt;/p&gt;
&lt;p&gt;A secure machine requires logging into an account with elevated &lt;code&gt;privileges&lt;/code&gt; to perform administrative tasks.&lt;/p&gt;
&lt;p&gt;This can be the &lt;code&gt;root&lt;/code&gt; account itself or other specific accounts, but &lt;strong&gt;it should not be just any user account, even if it belongs to the owner of the machine&lt;/strong&gt;.&lt;/p&gt;</description></item></channel></rss>