[sudo-workers] Supporting sudoUser:!foo in sudo.ldap

Todd C. Miller Todd.Miller at sudo.ws
Tue Dec 14 08:55:43 MST 2021


I think this is worth pursuing.  The question I have is whether
supporting !username is sufficient.  If we are going to support
this kind of construct, it should probably mirror the existing query
that contains uid, groups, gids and netgroups.

Does that make sense?

 - todd


More information about the sudo-workers mailing list