[unisog] root level access policies?
allan at clas.ufl.edu
Mon May 9 16:59:21 GMT 2005
> > We use sudo for all root access, but wish we could keep a log of commands
> > issued when the user runs:
> > sudo csh
> > and then works in the new shell as root. sudo only logs the "csh" command,
> > not the commands to the shell itself.
I'm for not allowing shells in sudo, but if politics require it of you, there's sudosh, which is a logging shell. It's by a member of the SAGE list which I'm on:
More information about the unisog