[rhn-users] sudo and NIS

Buchan Milne bgmilne at staff.telkomsa.net
Wed May 31 16:10:06 UTC 2006


On Thursday 25 May 2006 17:36, Brad Sharpe wrote:
> I've been setting up a network using NIS and slowly locking it down.

"Locking down" and NIS don't really fit in the same sentence IMHO ...

> I want 
> to setup users to be able to SUDO instead of logging in as root.
>
> I started by editing the /etc/sudoers (using visudo) file and entering
> %wheel ALL.=(ALL) ALL Then I added my own user account into the wheel group
> and tested on the server and it works.
>
> When I go to one of my other machines running NIS I am unable to run sudo,
> I get a permission error.

Did you copy the /etc/sudoers file to the other host?

> If I add myself to the local machines wheel group 
> it works. I don't want to edit every machines /etc/group file to get this
> to work. Any help would be appreciated.

Well, we use LDAP and sudo (re-built with LDAP support) ... but avoid sudo 
rules using "system" groups, since compat is ugly ...

So, if you had copied the /etc/sudoers file, you may want to try creating a 
group that only exists in NIS, and adding a sudo rule for it.


Regards,
Buchan

-- 
Buchan Milne
ISP Systems Specialist
B.Eng,RHCE(803004789010797),LPIC-2(LPI000074592)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 191 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/rhn-users/attachments/20060531/fbc6e0bb/attachment.sig>


More information about the rhn-users mailing list