Ka thuso
Haeba li-sudoers li nepahetse, empa li sa tloaeleha haholo ts'ebetsong, melao e lumellang ho etsoa ha taelo e itseng tlas'a UID ea mosebedisi leha e le ofe ntle le motso, mohlaseli ea nang le matla a ho phethahatsa taelo ena a ka tlōla thibelo e behiloeng mme a phethahatsa taelo ka litokelo tsa motso. Ho qoba moeli, leka feela ho phethahatsa taelo e boletsoeng litlhophisong ka UID "-1" kapa "4294967295", e tla lebisa ts'ebetsong ea eona ka UID 0.
Mohlala, haeba ho na le molao litlhophisong tse fang mosebelisi ofe kapa ofe tokelo ea ho etsa lenaneo /usr/bin/id tlasa UID efe kapa efe:
myhost TSOHLE = (TSOHLE, !root) /usr/bin/id
kapa khetho e lumellang ho etsoa feela bakeng sa mosebelisi ea itseng:
myhost bob = (ALL, !root) /usr/bin/id
Mosebelisi a ka sebelisa "sudo -u '#-1' id" mme sesebelisoa sa /usr/bin/id se tla hlahisoa joalo ka motso, leha ho na le thibelo e hlakileng litlhophisong. Bothata bo bakoa ke ho hlokomoloha litekanyetso tse khethehileng "-1" kapa "4294967295", tse sa lebiseng phetohong ea UID, empa kaha sudo ka boeona e se e ntse e sebetsa e le motso, ntle le ho fetola UID, taelo ea sepheo le eona e teng. qalisoa ka litokelo tsa motso.
Likabelong tsa SUSE le OpenSUSE, ntle le ho hlakisa "NOPASSWD" molaong, ho na le ts'oaetso.
myhost TSOHLE = (TSOHLE, !root) NOPASSWD: /usr/bin/id
Taba e lokisitsoe tokollong
Source: opennet.ru