El archivo sudoers también permite especificar excepciones, aqui tienen un ejemplo

Host_Alias     SERVER = 192.168.0.1, 192.168.0.2

User_Alias     ADM = usuario1
User_Alias     PWR = usuario2, usuario3
User_Alias     USR = usuario2

Cmnd_Alias      SHUTDOWN = /sbin/shutdown
Cmnd_Alias      HALT = /sbin/halt
Cmnd_Alias      REBOOT = /sbin/reboot
Cmnd_Alias IFUPDOWN = /sbin/ifup [a-z]*([0-9])?, /sbin/ifdown [a-z]*([0-9])? Cmnd_Alias SERVICES = /sbin/service network *, /sbin/service iptables *, /sbin/service httpd *, /sbin/service postfix *
Cmnd_Alias      PASS = /usr/bin/passwd *, !/usr/bin/passwd root
Cmnd_Alias      FDISK = /sbin/fdisk *, ! /sbin/fdisk /dev/sda(/[0-2])?
Cmnd_Alias      MOUNT = /sbin/mount *, /sbin/umount *, !/sbin/umount /
Cmnd_Alias USERMGR = /usr/sbin/useradd, /usr/sbin/usermod, /usr/sbin/userdel, !/usr/sbin/usermod root
Cmnd_Alias      OTHER = /usr/bin/less *, /bin/bash

ADM     SERVER = ALL
USR     SERVER = FDISK, MOUNT, IFUPDOWN, SERVICES, PASS, USERMGR, OTHER
PWR     SERVER = NOPASSWD: SHUTDOWN, HALT, REBOOT


______________________________________________________________________
Lista de correos del Grupo de Usuarios de Tecnologías Libres de Cuba.
Gutl-l@jovenclub.cu
https://listas.jovenclub.cu/cgi-bin/mailman/listinfo/gutl-l

Responder a