Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium


how does euid, eguid, uid, guid mentioned in /etc/security/exec_attr affect the RBAC ?

Posted on 2009-04-26
Medium Priority
Last Modified: 2013-12-27
If a command like /usr/sbin/auditd is assigned to the role auditrole, What would be the uid, euid in all the three condition mentioned if the command /usr/sbin/auditd is being run from role's shell. Thanks!
#cat /etc/security/exec_attr 
Audit User:suser:cmd:::/usr/sbin/auditd:uid=0
Audit User:suser:cmd:::/usr/sbin/auditd:euid=0
Audit User:suser:cmd:::/usr/sbin/auditd:uid=0,euid=0

Open in new window

Question by:beer9
LVL 22

Accepted Solution

Brian Utterback earned 1000 total points
ID: 24236999
Using uid=0 sets both the euid and the uid to 0 in the process. Setting euid=0 only sets the euid and leaves the
uid alone. The last one is redundant, since uid=0 implies euid=0 as well.

Author Closing Comment

ID: 31574621
Thanks blu :-)

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Attention: This article will no longer be maintained. If you have any questions, please feel free to mail me. jgh@FreeBSD.org Please see http://www.freebsd.org/doc/en_US.ISO8859-1/articles/freebsd-update-server/ for the updated article. It is avail…
When you do backups in the Solaris Operating System, the file system must be inactive. Otherwise, the output may be inconsistent. A file system is inactive when it's unmounted or it's write-locked by the operating system. Although the fssnap utility…
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
This video shows how to set up a shell script to accept a positional parameter when called, pass that to a SQL script, accept the output from the statement back and then manipulate it in the Shell.
Suggested Courses

580 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question