On Sat, Jun 12, 2004 at 11:59:59AM +0000, Andy Smith wrote:

> It might be best to just say "I don't want you doing this" and then
> punish people who do, since you do have logs.

yeah, thought this might be the case :| thanks for confirming it.

> If you're trying to restrict what people can do with sudo it will be
> better to explicitly list each binary they can run as root and make
> sure there's no way they can modify those binaries.

yeah, but too many binaries (or roles too diffuse, tightening up of which 
would be another way of handling it)

cheers
-- 
John  

_______________________________________________
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to