I don't know how doas is keeping track of a session. If it's by interactive tty session only, that could cause problems with non-interactive scripts. I'll let someone closer to the code answer that question.
On Thu, Dec 15, 2016 at 11:25 AM, jungle Boogie <jungleboog...@gmail.com> wrote: > On 15 December 2016 at 09:21, Ax0n <a...@h-i-r.net> wrote: > > In -CURRENT, doas.conf has a "persist" keyword that will only prompt once > > per session. This isn't available in OpenBSD 6.0, but should work when > 6.1 > > is released. Here's a fairly minimal rule that would allow wheel group > users > > to do whatever they want with doas after authenticating once: > > DOH! I forgot to mention that I'm running a snapshot from this morning. > > OpenBSD 6.0-current (GENERIC.MP) #38: Thu Dec 15 08:24:17 MST 2016 > bu...@amd64.openbsd.org:/usr/src/sys/arch/amd64/compile/GENERIC.MP > > by doas.conf: > permit persist :wheel > permit persist keepenv jungle as root > > With this, should I be re-prompted for the password? > > > -- > ------- > inum: 883510009027723 > sip: jungleboo...@sip2sip.info