Default sudo setup (Was: Re: The Future of Fedora.)

Michael K. Johnson johnsonm at redhat.com
Wed Dec 10 23:11:56 UTC 2003


On Wed, Dec 10, 2003 at 05:33:40PM -0500, Bill Nottingham wrote:
> Actually, with SELinux, you can just define that users
> foo/bar/baz are allowed to assume the administrator role;
> you then have the role change thing just prompt for the
> users password; for the users where this isn't allowed, they
> won't be able to assume that role.

So we can ignore the wheel group, and instead write some policy files,
and we might have to make minor changes to userhelper and pam_console?

michaelkjohnson

 "He that composes himself is wiser than he that composes a book."
 Linux Application Development                     -- Ben Franklin
 http://people.redhat.com/johnsonm/lad/





More information about the fedora-devel-list mailing list