Adding OpenBSD sudo to the FreeBSD base system?

Dag-Erling Smørgrav des at des.no
Mon Jul 25 11:42:01 GMT 2005


Garrett Wollman <wollman at csail.mit.edu> writes:
> su(8) already has the behavior you want.  (Now implemented in a PAM
> module, and I forget the precise details.)

You're probably thinking of the auth_as_self option in pam_unix(8).
It was introduced by Mark four years ago.

However, what sudo(1) has that su(8) lacks is the ability to control
which commands the user is allowed to execute with elevated
privileges.

DES
-- 
Dag-Erling Smørgrav - des at des.no



More information about the freebsd-security mailing list