官术网_书友最值得收藏!

Method 2 – creating an entry in the sudo policy file

Okay, adding users to either the wheel group or the sudo group works great if you're either just working with a single machine or if you're deploying a sudo policy across a network that uses just one of these two admin groups. But what if you want to deploy a sudo policy across a network with a mixed group of both Red Hat and Ubuntu machines? Or what if you don't want to go around to each machine to add users to an admin group? Then, just create an entry in the sudo policy file. You can either create an entry for an inpidual user or create a user alias. If you do sudo visudo on your CentOS virtual machine, you'll see a commented-out example of a user alias:

# User_Alias ADMINS = jsmith, mikem

You can uncomment this line and add your own set of usernames, or you can just add a line with your own user alias. To give members of the user alias full sudo power, add another line that would look like this:

ADMINS ALL=(ALL) ALL

It's also possible to add a visudo entry for just a single user, and you might need to do that under very special circumstances. For example:

frank ALL=(ALL) ALL

But for ease of management, it's best to go with either a user group or a user alias.

The sudo policy file is the /etc/sudoers file. I always hesitate to tell students that because every once in a while I have a student try to edit it in a regular text editor. That doesn't work though, so please don't try it. Always edit sudoers with the command, sudo visudo.

主站蜘蛛池模板: 太仓市| 商丘市| 石阡县| 浪卡子县| 丰都县| 汾阳市| 方城县| 饶阳县| 余姚市| 即墨市| 三穗县| 沛县| 无棣县| 通城县| 沾益县| 乌兰浩特市| 罗平县| 凤庆县| 阳朔县| 紫金县| 英山县| 邵阳市| 阿拉善左旗| 扎鲁特旗| 丰顺县| 衡阳市| 丹江口市| 泰顺县| 搜索| 萨嘎县| 铜川市| 龙山县| 密云县| 怀柔区| 巩义市| 健康| 奇台县| 平乐县| 南汇区| 宁南县| 平山县|