The problem the article is describing is frankly problem with lack of good configuration management. Hell, you can use SSH keys to authorize via sudo and use hardware token to store those keys, sidestepping problem of "user left their id_rsa somewhere"
Comments
The problem the article is describing is frankly problem with lack of good configuration management. Hell, you can use SSH keys to authorize via sudo and use hardware token to store those keys, sidestepping problem of "user left their id_rsa somewhere"