Hi again,

It's been 6 weeks since I posted the PF VM sudoer's file but haven't heard from 
any so thought I should check in.

Does anyone see any issues with the sudoers file below?  This is a homegrown 
VM, it's not the Zen release.  Dhcpd and pfdhcplistener do not start on a 
server reboot, they will start manually, later.

===================================================
Here are the contents of the file /etc/sudoers.d/10_packetfence

pf ALL=NOPASSWD: /sbin/iptables, /usr/sbin/ipset, /sbin/ip, /sbin/vconfig, 
/sbin/route, /sbin/service, /usr/bin/tee, /usr/local/pf/sbin/pfdhcplistener, 
/bin/kill, /usr/sbin/dhcpd, /usr/sbin/radiusd, /usr/sbin/snort, 
/usr/bin/suricata
Defaults:pf !requiretty

That file is included in the config because of this line in /etc/sudoers:

## Read drop-in files from /etc/sudoers.d (the # here does not mean a comment)
#includedir /etc/sudoers.d
===================================================

Thanks.
Steve

On Jan 29, 2014, at 2:32 PM, Stephen Wittstruck <[email protected]> wrote:

> ===================================================
> Here are the contents of the file /etc/sudoers.d/10_packetfence
> 
> pf ALL=NOPASSWD: /sbin/iptables, /usr/sbin/ipset, /sbin/ip, /sbin/vconfig, 
> /sbin/route, /sbin/service, /usr/bin/tee, /usr/local/pf/sbin/pfdhcplistener, 
> /bin/kill, /usr/sbin/dhcpd, /usr/sbin/radiusd, /usr/sbin/snort, 
> /usr/bin/suricata
> Defaults:pf !requiretty
> 
> That file is included in the config because of this line in /etc/sudoers:
> 
> ## Read drop-in files from /etc/sudoers.d (the # here does not mean a comment)
> #includedir /etc/sudoers.d
> ===================================================

Attachment: smime.p7s
Description: S/MIME cryptographic signature

------------------------------------------------------------------------------
Managing the Performance of Cloud-Based Applications
Take advantage of what the Cloud has to offer - Avoid Common Pitfalls.
Read the Whitepaper.
http://pubads.g.doubleclick.net/gampad/clk?id=121054471&iu=/4140/ostg.clktrk
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to