On Sat, Jun 12, 2004 at 11:59:59AM +0000, Andy Smith wrote: > It might be best to just say "I don't want you doing this" and then > punish people who do, since you do have logs.
yeah, thought this might be the case :| thanks for confirming it. > If you're trying to restrict what people can do with sudo it will be > better to explicitly list each binary they can run as root and make > sure there's no way they can modify those binaries. yeah, but too many binaries (or roles too diffuse, tightening up of which would be another way of handling it) cheers -- John _______________________________________________ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "[EMAIL PROTECTED]"
