[unisog] root level access policies?

Allan West allan at clas.ufl.edu
Mon May 9 16:59:21 GMT 2005


> > We use sudo for all root access, but wish we could keep a log of commands
> > issued when the user runs:
> > 
> >     sudo csh
> > 
> > and then works in the new shell as root. sudo only logs the "csh" command,
> > not the commands to the shell itself.

I'm for not allowing shells in sudo, but if politics require it of you, there's sudosh, which is a logging shell. It's by a member of the SAGE list which I'm on:

	http://sourceforge.net/projects/sudosh/
	http://freshmeat.net/projects/sudosh



More information about the unisog mailing list