Trust me. Not being able to logon as root from a GUI login is a very good security policy. By making root a role you have to give the users the right to have root privileges rather then have someone automatically know the main login to the computer. By also ensuring that root is a role it also prevent users who do not know what they are doing from logging in as root and screwing up your system.
And trust compared to dealing with UAC in windows root as a role is godsend. Josh -- This message posted from opensolaris.org
