Re: ACL READ

Amon Ott <[email protected]>
Newsgroups gmane.linux.rsbac
Message-ID <[email protected]>
On Sunday 08 April 2012 wrote Jens Kasten:
> For example:
>
> I did this as an normal user:
>      su -
>
> without success, AUTH would not allowed too, but its stop on ACL modul.
>
> This is from the logfile:
>
> Sun Apr  8 20:52:14 2012 :<6>0000008636|rsbac_adf_request(): request
> AUTHENTICATE, pid 5419, ppid 5411, prog_name su, prog_file /bin/su, uid
> 1000, remote ip 192.168.1.5, target_type USER, tid 0, attr none, value
> none, result NOT_GRANTED by ACL
>
> Does AUTHENTICATE has more weigth the READ?

It is independent. As its name says, to authenticate a user you need that 
right. When you type your password in su, it will check it, so that request 
is made. Without the right, any authentication against RSBAC UM will fail.

Amon.
-- 
http://www.rsbac.org - GnuPG: 2048g/5DEAAA30 2002-10-22
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.