Re: sudo and su support
"Doug Nordwall" <[email protected]>
| Newsgroups | gmane.comp.security.nessus.general |
|---|---|
| Message-ID | <[email protected]> |
In my own case, there are a fair number of machine that we have where we have a UID 0 account for our access that is a separate account from root, and we don't have "root" :) I realize that this is not a common configuration, so I was asking. I also noticed during my wish for said functionality that the unix compliance plugin that checks for shell ownership checks by name and not UID, so I got a small stack of "out of compliance" highs because the plugin said the shell was owned by this duplicate account (in addition to the "uid duplication" compliance check, which is valid) instead of root, even though it's just owned by uid 0 :) Or it might check by UID and then take the last entry in the password file. I didn't debug it much on friday afternoon with my coworkers bugging me to go intoxicate myself ;) On Mon, May 26, 2008 at 5:58 AM, Renaud Deraison (lists) < [email protected]> wrote: > > > Hello Doug, > > On May 25, 2008, at 7:55 PM, Doug Nordwall wrote: > > > I didn't see anythign that obviously allowed it, but does the sudo > > and su functionality of nessus support elevation to an account other > > than "root"? If not, is this on the roadmap anythere? > > No, this is not on the roadmap. What use case would you see for this ? > > > > Thanks, > > -- Renaud > > > _______________________________________________ > Nessus mailing list > [email protected] > http://mail.nessus.org/mailman/listinfo/nessus > -- Doug Nordwall Unix, Network, and Security Administrator You mean the vision is subject to low subscription rates?!!? - Scott Stone, on MMORPGs _______________________________________________ Nessus mailing list [email protected] http://mail.nessus.org/mailman/listinfo/nessus