[Freeipa-users] sudo NOPASSWD for a single command

Jason B. Nance jason at tresgeek.net
Wed Feb 22 16:58:35 UTC 2017


> We have a script stored on a particular server in our realm that executes a
> number of non-privileged commands and are wanting to add /sbin/vgs command. The
> script uses SSH to then execute the same set of commands on all the servers in
> the realm.

> The owner of the script is in the administrator group and there are sudoer
> commands for the administrator group in general. We need to place a rule for
> this one command for either this group or the script owner to run NOPASSWD.

> Where and how would I specify that in the IPA admin console?

Have you tried creating your command in IPA as "NOPASSWD: /sbin/vgs" (Policy -> Sudo -> Sudo Commands)? 
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20170222/00106fad/attachment.htm>


More information about the Freeipa-users mailing list