visudo enhancement to edit-syntax-check arbitrary files

William R. Ward bill at
Fri Dec 14 03:01:06 EST 2001

Todd C. Miller writes:
>visudo in sudo 1.6.4 will have a -f flag to operate on arbitrary
>files and a -c flag to just check a file.
>The changes are in the sudo cvs tree as of a few days ago.

My understanding is that visudo requires you to already be root.  I
think that it is important to have the editor *not* run as uid 0 due
to the fact that you can launch sub-processes, edit other files, etc.
See the CAVEATS section in the man page for visudo.

Also, what mechanism is there to specify what the file syntax should


William R Ward            bill at
     If you're not part of the solution, you're part of the precipitate.

More information about the sudo-workers mailing list