[SunHELP] setuid

DAUBIGNE Sebastien - BOR ( SDaubigne@bordeaux-bersol.sema.slb.com ) SDaubigne at bordeaux-bersol.sema.slb.com
Wed Mar 20 11:12:58 CST 2002


You can't su witout password except you come from root.

You can either use a set-uid-bit or install "sudo" which is a more secure
solution.
However, if you want to use the set-uid-bit, make sure to use ksh for the
set-uid script, and reset the PATH variable to avoid trivial security holes
with PATH and IFS.


---
Sebastien DAUBIGNE
sebastien.daubigne at sema.fr <mailto:sebastien.daubigne at sema.fr>  - (+33)
(0)5.57.26.56.36
Sema Global Services - AFM/DW/Pessac

	-----Message d'origine-----
	De:	Markham, Richard [SMTP:RMarkham at hafeleamericas.com]
	Date:	mardi 19 mars 2002 23:36
	@:	Sunhelp (E-mail)
	Objet:	[SunHELP] setuid

	I need to make a script for 'user' that will run commands or another
	script as 'xuser' so it will have necessary perms to do so.  Will su
be
	used?
	and if so what do i do to hide the password?
	_______________________________________________
	SunHELP maillist  -  SunHELP at sunhelp.org
	http://www.sunhelp.org/mailman/listinfo/sunhelp



More information about the SunHELP mailing list