Ranbir via FreeIPA-users wrote:
> On Sun, 2017-09-24 at 02:28 -0400, Ranbir via FreeIPA-users wrote:
>> I'm now thoroughly confused! Can anyone lend a hand?
> I think I managed to achieve what I wanted by specifying a "sudo
> order". Now I can give the user the ability to run every command as
> another user (that that user is allowed to run), with the exceptions of
> /bin/su and any shells.

I'd refer you to the SECURITY NOTES in the sudoers man page to
reconsider this approach.

FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org
To unsubscribe send an email to freeipa-users-le...@lists.fedorahosted.org

Reply via email to