Default sudo setup (Was: Re: The Future of Fedora.)

Bill Nottingham notting at redhat.com
Thu Dec 11 05:57:47 UTC 2003


Michael K. Johnson (johnsonm at redhat.com) said: 
> On Wed, Dec 10, 2003 at 05:33:40PM -0500, Bill Nottingham wrote:
> > Actually, with SELinux, you can just define that users
> > foo/bar/baz are allowed to assume the administrator role;
> > you then have the role change thing just prompt for the
> > users password; for the users where this isn't allowed, they
> > won't be able to assume that role.
> 
> So we can ignore the wheel group, and instead write some policy files,
> and we might have to make minor changes to userhelper and pam_console?

I believe so. Dan or Russell probably are a little fresher on the
details.

Bill





More information about the devel mailing list