LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 04-14-2009, 02:18 AM   #1
filex
Member
 
Registered: Sep 2004
Posts: 56

Rep: Reputation: 15
Require different /etc/sudoers permission on 2 sles 10 x64 box?


I'm getting 2 different /etc/sudoers permission error message on 2 SLES 10 x64 box.

---------
SERVER01
---------
server01:/ # rpm -qf /usr/bin/sudo
sudo-1.6.8p12-18.2
server01:/ # cat /etc/SuSE-release
SUSE Linux Enterprise Server 10 (x86_64)
VERSION = 10
server01:/ # ls -l /etc/sudoers
-r--r----- 1 root root 1796 Feb 18 09:38 /etc/sudoers

user01@server01:~> sudo su -
sudo: /etc/sudoers is mode 0440, should be 0640

/var/log/messages
Apr 14 08:37:11 server01 sudo: user01 : /etc/sudoers is mode 0440, should be 0640 ; TTY=pts/3 ; PWD=/home/user01 ; USER=root ; COMMAND=/bin/su -

--------
SERVER02
--------
sapbipdj:~ # rpm -qf /usr/bin/sudo
sudo-1.6.8p12-18.14

sapbipdj:~ # cat /etc/SuSE-release
SUSE Linux Enterprise Server 10 (x86_64)
VERSION = 10
PATCHLEVEL = 1

user02@server02:~> sudo su -
sudo: /etc/sudoers is mode 0640, should be 0440

server02:~ # ls -l /etc/sudoers
-rw-r----- 1 root root 1796 Feb 18 16:38 /etc/sudoers

/var/log/message
Apr 14 15:15:25 server02 sudo: user02 : /etc/sudoers is mode 0640, should be 0440 ; TTY=pts/1 ; PWD=/home/user02 ; USER=root ; COMMAND=/bin/su -


Any idea? Please advise.
 
Old 04-14-2009, 02:46 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
Ahh, took me a while to see what the issue was... well they are different version rpm's so I'd upgrade both and look to have 440 across all instances for consistency. If you want to change the rights from what the binary wants I believe you'd need to recompile it.

Last edited by acid_kewpie; 04-14-2009 at 02:52 AM.
 
Old 04-14-2009, 03:21 AM   #3
filex
Member
 
Registered: Sep 2004
Posts: 56

Original Poster
Rep: Reputation: 15
I'm not sure whether this is sudo RPM or SuSE service pack version? I cant do any upgrade right now because it's a PRODUCTION box.

Last edited by filex; 04-14-2009 at 03:24 AM.
 
Old 04-14-2009, 03:23 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
I'm lead to believe that the rights on the file are recorded when sudo is compiled and if they don't match then trouble ensues. So it's most likely the responsibility of the packager themselves. Do you have some form of centralized file distribution of job scheduling which might account for the permissions on these files differing? Or reasons you'd be aware of outside of that?
 
Old 04-15-2009, 02:02 AM   #5
filex
Member
 
Registered: Sep 2004
Posts: 56

Original Poster
Rep: Reputation: 15
solved

It's confirmed.

sudo-1.6.8p12-18.14 RPM - /etc/sudoers required permission 440
and
sudo-1.6.8p12-18.2 RPM - /etc/sudoers required permission 640

Problem solved.


Thanks.
 
  


Reply

Tags
sudo, sudoers



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Apache2 Require user with Require group Russianspi Linux - Server 2 01-30-2008 11:21 AM
Minimim packages to get a SLES 10 box up? rsmccain SUSE / openSUSE 0 01-12-2007 01:07 PM
can i run linux mandriver x64 with windows x64 bit if so wich one should i install fi malmac2000 Linux - Software 2 04-26-2006 07:04 AM
I deleted /etc/sudoers and creates a new file call sudoers but now it doesnt for visu abefroman Linux - Software 1 11-10-2005 05:03 PM
Why I cannot change permission on /etc/sudoers? mikeshn Linux - Software 1 01-06-2005 11:26 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 02:11 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration