Solved

How are the concept of chroot and sudo together working?

Posted on 2014-11-20
2
276 Views
Last Modified: 2014-11-24
In my mind i started to create concept to solve the problem of regulate access of a big a mount of root users.
I like the idea to have usergroups with different access rights on a system.

So i want to have for example root users for the whole System(s) and a group for a small part of the system. I checked the ACL, chroot and sudo and for me it will best fitting the combination of chroot and sudo. And for that i need an answer how this two work together.

If a user logins in a chroot enviroment and in that i have a sudo for example a super user (rootlike) in chroot is there anything against that combination? Or do i have to be awared of any breakouts to the real root directories?

Like i understand is if you use only sudo its possible do climb the tree with /../../../ but in a chroot he can only climb to the fake root???
0
Comment
Question by:Wilder_Admin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 29

Accepted Solution

by:
Jan Springer earned 500 total points
ID: 40455158
'sudo' is used (via the sudoers configuration file) to define what regular accounts may run privileged commands.

'chroot' is the process to create a fake root so that real directories above the fake root are not visible.  you do not chroot the privileged account(s).
0
 
LVL 8

Author Closing Comment

by:Wilder_Admin
ID: 40462157
I needed Informations if it would work together not a suggestion how to do. But i tried it on the hard way and its working like desired.
0

Featured Post

What is a Denial of Service (DoS)?

A DoS is a malicious attempt to prevent the normal operation of a computer system. You may frequently see the terms 'DDoS' (Distributed Denial of Service) and 'DoS' used interchangeably, but there are some subtle differences.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Google Drive is extremely cheap offsite storage, and it's even possible to get extra storage for free for two years.  You can use the free account 15GB, and if you have an Android device..when you install Google Drive for the first time it will give…
In the first part of this tutorial we will cover the prerequisites for installing SQL Server vNext on Linux.
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:
Learn how to navigate the file tree with the shell. Use pwd to print the current working directory: Use ls to list a directory's contents: Use cd to change to a new directory: Use wildcards instead of typing out long directory names: Use ../ to move…
Suggested Courses

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question