Re: ACL READ
Amon Ott <[email protected]>
| Newsgroups | gmane.linux.rsbac |
|---|---|
| Message-ID | <[email protected]> |
On Sunday 08 April 2012 wrote Jens Kasten: > For example: > > I did this as an normal user: > su - > > without success, AUTH would not allowed too, but its stop on ACL modul. > > This is from the logfile: > > Sun Apr 8 20:52:14 2012 :<6>0000008636|rsbac_adf_request(): request > AUTHENTICATE, pid 5419, ppid 5411, prog_name su, prog_file /bin/su, uid > 1000, remote ip 192.168.1.5, target_type USER, tid 0, attr none, value > none, result NOT_GRANTED by ACL > > Does AUTHENTICATE has more weigth the READ? It is independent. As its name says, to authenticate a user you need that right. When you type your password in su, it will check it, so that request is made. Without the right, any authentication against RSBAC UM will fail. Amon. -- http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22