On Wed, 2008-09-17 at 19:35 -0400, Matthew Miller wrote: > It could be done, but /etc/sudoers.d still might have odd interactions with > the main file, and in any case it'd be a certain amount of work which might > not get accepted upstream. Meanwhile, group approach works right now and > requires a one character change to an existing config file. > > Developing a special sudoers.d directory also doesn't automatically work > with userhelper/consolehelper -- which the group solution does. (And > PolicyKit can work off group membership too, right?) Also, with a 'chgrp wheel /var/log/messages' and a 'chmod 640 /var/log/messages' you can solve the log reading problem too. Maybe we should consider making that default too...
Attachment:
signature.asc
Description: This is a digitally signed message part
-- fedora-devel-list mailing list fedora-devel-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-devel-list