Another suggestion for root access control

This feature now [[!taglink todo/wait]]s for [[TailsGreeter]].
Another Suggestion
How about randomly generating a root password at boot and having [[todo/TailsGreeter]] run as root allowing TailsGreeter to set a root password if a user gives one? If the user opts out of providing a root password, the randomly generated one stays, therefore being a bit more secure than leaving root's password as none.
