[sudo-users] LDAP defaults for commands

Daniele Palumbo daniele at retaggio.net
Wed Dec 6 16:34:01 MST 2017


Il giorno 06 dic 2017, alle ore 23:52, Todd C. Miller <Todd.Miller at sudo.ws> ha scritto:
> That sudoRole will never match a query because there is no sudoUser
> in it.  You would need to add one or more sudoUser entries to grant
> the privileges to a user or group of users.
> 
> Unfortunately, there is no way to specify per-command options in
> sudoers LDAP.  The options are either global or specific to a given
> sudoRole.

I have filed then
https://bugzilla.sudo.ws/show_bug.cgi?id=810
for the lack of this functionality.

https://bugzilla.sudo.ws/show_bug.cgi?id=811
for fixing the documentation.

My memory is too short :)

Thank you very much for the fast reply, i hope both bug can be closed in a short.

Daniele
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 195 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <https://www.sudo.ws/pipermail/sudo-users/attachments/20171207/2dfcac61/attachment.bin>


More information about the sudo-users mailing list