[Bug 1797944] Re: sudoers entries with FQDN are ignored on Ubuntu 14.04

Oleg Gumenyuk oleg.v.gumenyuk at intel.com
Thu Oct 18 09:19:33 UTC 2018


** Description changed:

  Here is the short example of /etc/sudoers in order to reproduce the issue that if host is defined as FQDN then such string is skipped on Ubuntu 14.04. The following sudo is installed on the host "1.8.9p5-1ubuntu1.4  amd64"
  ~~~~~~~~~~~~~
  ~# cat /etc/sudoers
  Defaults        syslog=local3
  Defaults        !set_home
  Defaults        !targetpw
  Defaults        !insults
  Defaults        mailto=alert-sudo
  Defaults        !mail_always
  Defaults        ignore_dot
  Defaults        timestamp_timeout=5
  Defaults        listpw=always
  Defaults        !lecture_file
  
  Defaults        fqdn
  
  user1      host1.xxx.yyyy.com = (root) /bin/true
  user1      host1 = (root) /bin/false
  ~~~~~~~~~~~~~
- ~$ sudo -l -U ovgumeny
- Matching Defaults entries for ovgumeny on fmyuranch01:
+ ~$ sudo -l -U user1
+ Matching Defaults entries for ovgumeny on host1:
      syslog=local3, !set_home, !targetpw, !insults, mailto=alert-sudo, !mail_always, ignore_dot,
      timestamp_timeout=5, listpw=always, !lecture_file, fqdn
  
  User user1 may run the following commands on host1:
      (root) /bin/false
  ~~~~~~~~~~~~~
  ~$ hostname
  host1
  ~$ hostname -f
  host1.xxx.yyyy.com
  ~~~~~~~~~~~~~
  ~# lsb_release  -d
  Description:    Ubuntu 14.04.5 LTS
  ~~~~~~~~~~~~~

** Description changed:

  Here is the short example of /etc/sudoers in order to reproduce the issue that if host is defined as FQDN then such string is skipped on Ubuntu 14.04. The following sudo is installed on the host "1.8.9p5-1ubuntu1.4  amd64"
  ~~~~~~~~~~~~~
  ~# cat /etc/sudoers
  Defaults        syslog=local3
  Defaults        !set_home
  Defaults        !targetpw
  Defaults        !insults
  Defaults        mailto=alert-sudo
  Defaults        !mail_always
  Defaults        ignore_dot
  Defaults        timestamp_timeout=5
  Defaults        listpw=always
  Defaults        !lecture_file
  
  Defaults        fqdn
  
  user1      host1.xxx.yyyy.com = (root) /bin/true
  user1      host1 = (root) /bin/false
  ~~~~~~~~~~~~~
  ~$ sudo -l -U user1
- Matching Defaults entries for ovgumeny on host1:
+ Matching Defaults entries for user1 on host1:
      syslog=local3, !set_home, !targetpw, !insults, mailto=alert-sudo, !mail_always, ignore_dot,
      timestamp_timeout=5, listpw=always, !lecture_file, fqdn
  
  User user1 may run the following commands on host1:
      (root) /bin/false
  ~~~~~~~~~~~~~
  ~$ hostname
  host1
  ~$ hostname -f
  host1.xxx.yyyy.com
  ~~~~~~~~~~~~~
  ~# lsb_release  -d
  Description:    Ubuntu 14.04.5 LTS
  ~~~~~~~~~~~~~

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to sudo in Ubuntu.
https://bugs.launchpad.net/bugs/1797944

Title:
  sudoers entries with FQDN are ignored on Ubuntu 14.04

Status in sudo package in Ubuntu:
  New

Bug description:
  Here is the short example of /etc/sudoers in order to reproduce the issue that if host is defined as FQDN then such string is skipped on Ubuntu 14.04. The following sudo is installed on the host "1.8.9p5-1ubuntu1.4  amd64"
  ~~~~~~~~~~~~~
  ~# cat /etc/sudoers
  Defaults        syslog=local3
  Defaults        !set_home
  Defaults        !targetpw
  Defaults        !insults
  Defaults        mailto=alert-sudo
  Defaults        !mail_always
  Defaults        ignore_dot
  Defaults        timestamp_timeout=5
  Defaults        listpw=always
  Defaults        !lecture_file

  Defaults        fqdn

  user1      host1.xxx.yyyy.com = (root) /bin/true
  user1      host1 = (root) /bin/false
  ~~~~~~~~~~~~~
  ~$ sudo -l -U user1
  Matching Defaults entries for user1 on host1:
      syslog=local3, !set_home, !targetpw, !insults, mailto=alert-sudo, !mail_always, ignore_dot,
      timestamp_timeout=5, listpw=always, !lecture_file, fqdn

  User user1 may run the following commands on host1:
      (root) /bin/false
  ~~~~~~~~~~~~~
  ~$ hostname
  host1
  ~$ hostname -f
  host1.xxx.yyyy.com
  ~~~~~~~~~~~~~
  ~# lsb_release  -d
  Description:    Ubuntu 14.04.5 LTS
  ~~~~~~~~~~~~~

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/sudo/+bug/1797944/+subscriptions



More information about the foundations-bugs mailing list