Solved

How are the concept of chroot and sudo together working?

Posted on 2014-11-20
2
269 Views
Last Modified: 2014-11-24
In my mind i started to create concept to solve the problem of regulate access of a big a mount of root users.
I like the idea to have usergroups with different access rights on a system.

So i want to have for example root users for the whole System(s) and a group for a small part of the system. I checked the ACL, chroot and sudo and for me it will best fitting the combination of chroot and sudo. And for that i need an answer how this two work together.

If a user logins in a chroot enviroment and in that i have a sudo for example a super user (rootlike) in chroot is there anything against that combination? Or do i have to be awared of any breakouts to the real root directories?

Like i understand is if you use only sudo its possible do climb the tree with /../../../ but in a chroot he can only climb to the fake root???
0
Comment
Question by:Wilder_Admin
2 Comments
 
LVL 28

Accepted Solution

by:
Jan Springer earned 500 total points
ID: 40455158
'sudo' is used (via the sudoers configuration file) to define what regular accounts may run privileged commands.

'chroot' is the process to create a fake root so that real directories above the fake root are not visible.  you do not chroot the privileged account(s).
0
 
LVL 8

Author Closing Comment

by:Wilder_Admin
ID: 40462157
I needed Informations if it would work together not a suggestion how to do. But i tried it on the hard way and its working like desired.
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
installing LSI MegaRAID Storage Manager on CentOS 7 22 348
AWS ELB 5 78
open source backup solution 1 29
Why  my code (program) build with old compiler? 11 47
Over the last ten+ years I have seen Linux configuration tools come and go. In the early days there was the tried-and-true, all-powerful linuxconf that many thought would remain the one and only Linux configuration tool until the end of times. Well,…
Hello EE, Today we will learn how to send all your network traffic through Tor which is useful to get around censorship and being tracked all together to a certain degree. This article assumes you will be using Linux, have a minimal knowledge of …
Learn how to get help with Linux/Unix bash shell commands. Use help to read help documents for built in bash shell commands.: Use man to interface with the online reference manuals for shell commands.: Use man to search man pages for unknown command…
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question