sudo 1.8.23b3 released
"Todd C. Miller" <[email protected]> Wed, 11 Apr 2018 09:09:46 -0600
| Newsgroups | gmane.comp.tools.sudo.devel |
|---|---|
| Message-ID | <[email protected]> |
The third beta version of sudo 1.8.23 is now available. In addition
to bug fixes, sudo 1.8.23 introduces the cvtsudoers utility which
can convert between sudoers formats and perform some basic filtering.
Source:
https://www.sudo.ws/sudo/dist/beta/sudo-1.8.23b3.tar.gz
ftp://ftp.sudo.ws/pub/sudo/beta/sudo-1.8.23b3.tar.gz
SHA256 checksum:
59c4f4763d13c7115caa3c920e64f9f377b609688ad5b0be2d9815d57390062a
MD5 checksum:
27755057b7a12d71b48f30b14bfe18e7
Binary packages:
https://www.sudo.ws/sudo/dist/beta/packages/index.html#binary
For a list of download mirror sites, see:
https://www.sudo.ws/sudo/download_mirrors.html
Sudo web site:
https://www.sudo.ws/sudo/
Sudo web site mirrors:
https://www.sudo.ws/sudo/mirrors.html
Major changes between sudo 1.8.23b3 and 1.8.23b2:
* The cvtsudoers utility now supports setting defaults types and
the suppression list in its config file.
* The cvtsudoers utility has a new "-p" option to prune non-matching
entries from the output when the "-m" option is also used.
* Fixed a problem with the process start time test in "make check"
when run in a Linux container. The test now uses the "btime"
field in /proc/stat to get the system start time instead of using
/proc/uptime, which is the container uptime. Bug #829.
* Sudoedit now checks the writability of a temporary directory
before using it. For example, if /var/tmp is not writable but
/tmp is, then /tmp will be used.
* If the cvtsudoers utility is given the -d option, any aliases
used by Defaults entries that are not being converted are omitted
from the output if they are otherwise unused.
* Updated translations from translationproject.org.
Major changes between sudo 1.8.23b2 and 1.8.23b1:
* Fixed a bug on some systems where sudo could hang on command
exit when I/O logging was enabled. Bug #826.
* The cvtsudoers utility has gained an option to control what type
of Defaults entries are translated.
* The sudoers.ldap manual now has a section on converting from
file-based sudoers to LDAP-based.
Major changes between sudo 1.8.23b1 and 1.8.22:
* PAM account management modules and BSD auto approval modules are
now run even when no password is required.
* For kernel-based time stamps, if no terminal is present, fall
back to parent-pid style time stamps.
* The new cvtsudoers utility replaces both the "sudoers2ldif" script
and the "visudo -x" functionality. It can read a file in either
sudoers or LDIF format and produce JSON, LDIF or sudoers output.
It is also possible to filter the generated output file by user,
group or host name.
* The file, ldap and sss sudoers backends now share a common set
of formatting functions for "sudo -l" output, which is also used
by the cvtsudoers utility.
* The /run directory is now used in preference to /var/run if it
exists. Bug #822.
* More accurate descriptions of the --with-rundir and --with-vardir
configure options. Bug #823.
* The setpassent() and setgroupent() functions are now used on systems
that support them to keep the passwd and group database open.
Sudo performs a lot of passwd and group lookups so it can be
beneficial to avoid opening and closing the files each time.
* The new case_insensitive_user and case_insensitive_group sudoers
options can be used to control whether sudo does case-sensitive
matching of users and groups in sudoers. Case insensitive
matching is now the default.
____________________________________________________________
sudo-workers mailing list <[email protected]>
For list information, options, or to unsubscribe, visit:
https://www.sudo.ws/mailman/listinfo/sudo-workers
signature.asc
(application/pgp-signature, 801 B)
-----BEGIN PGP SIGNATURE----- iQIcBAEBCAAGBQJaziUuAAoJEKn0wCHOpHD77LIP/RbdmlIfqxIsFC+9Cuhg+Jm2 JDyI8faHmms9m9oEO62fMV+pZ762iY8OP7Pv028w2oF6/p0JjRflHNaeOOrvACKZ bGm4eNq8K6nVYOemSNbp+fAR1aWj37d4dhJ9cPhHywUEhgN5bZHPD785D2M6Fx4P GcbPt0onJJHZHxgF50WSBnDqrCBCE4uvqxWfvQSZ643TEsFI4z/TwlmyYZxaQ2uJ ZH6eBxAg2Nu0Zw8uHSO5hWqy5Yyw1udkieSTo1iJSPajrGlPMiY6TrXfiJrS+lza KYuiCPPZgOrkC6mbVLBH+tmBqbtYPb7VGuaA59oS3Q5Ahoy0ktN4JxDdIUKqYzE9 SbjRewtjFOGyOEB9dH0Xlrjogs1VG352q/ryhAIEBLsaAL1BG+OW7bVtPHibYK04 q1GcTZw21OM3D9QpL/gAZeb7VtIhKA6sgMxIeBvFHzKJ1WpC2iUNwG1zai0SFTOq VjSM+/rdPVdYmJkYb8htTqrbLJgwuwpoxM3kznqlcXA6oUOEFcWvSiaFWoU1+bze Rxc0OsYW/Iw8hF4LihBxmQ/GgEOc16Y0bO0FNrkbzagWL+0OeF6jknzRNyTbkZeF hTSnEbSpuB8Cynf66AJGqEOgFWUVge9J6n0EpKsZrVwXodg5nAaeBgal3aqNIZv7 u5zPKkFGSqJbao8S4kek =Ajnu -----END PGP SIGNATURE-----