[sudo-users] sudo+ldap+netgroups woes

Simon Blunt bluntsimon28 at gmail.com
Wed Oct 15 10:14:14 EDT 2008


Hi,

My netgroups setup in ldap seems to work:

$ getent netgroup SuperUsers
SuperUsers         ( , bob, )

But sudo can't find it:

$ sudo -l
ldap_bind() ok
found:cn=defaults,ou=SUDOers,dc=example,dc=com
ldap search '(|(sudoUser=bob)(sudoUser=%bob)(sudoUser=%bob)(sudoUser=ALL))'
ldap search 'sudoUser=+*'
user_matches=0
host_matches=0
sudo_ldap_check(50)=0x44

What's sudo doing looking for users beginning "+"?

Thanks,

Simon



More information about the sudo-users mailing list