Solved

How are the concept of chroot and sudo together working?

Posted on 2014-11-20
2
273 Views
Last Modified: 2014-11-24
In my mind i started to create concept to solve the problem of regulate access of a big a mount of root users.
I like the idea to have usergroups with different access rights on a system.

So i want to have for example root users for the whole System(s) and a group for a small part of the system. I checked the ACL, chroot and sudo and for me it will best fitting the combination of chroot and sudo. And for that i need an answer how this two work together.

If a user logins in a chroot enviroment and in that i have a sudo for example a super user (rootlike) in chroot is there anything against that combination? Or do i have to be awared of any breakouts to the real root directories?

Like i understand is if you use only sudo its possible do climb the tree with /../../../ but in a chroot he can only climb to the fake root???
0
Comment
Question by:Wilder_Admin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 29

Accepted Solution

by:
Jan Springer earned 500 total points
ID: 40455158
'sudo' is used (via the sudoers configuration file) to define what regular accounts may run privileged commands.

'chroot' is the process to create a fake root so that real directories above the fake root are not visible.  you do not chroot the privileged account(s).
0
 
LVL 8

Author Closing Comment

by:Wilder_Admin
ID: 40462157
I needed Informations if it would work together not a suggestion how to do. But i tried it on the hard way and its working like desired.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Join Greg Farro and Ethan Banks from Packet Pushers (http://packetpushers.net/podcast/podcasts/pq-show-93-smart-network-monitoring-paessler-sponsored/) and Greg Ross from Paessler (https://www.paessler.com/prtg) for a discussion about smart network …
Google Drive is extremely cheap offsite storage, and it's even possible to get extra storage for free for two years.  You can use the free account 15GB, and if you have an Android device..when you install Google Drive for the first time it will give…
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.
Suggested Courses

710 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question