|
Bugzilla – Full Text Bug Listing |
| Summary: | Rule order evaluation request | ||
|---|---|---|---|
| Product: | Sudo | Reporter: | Scott <slfields66> |
| Component: | Sudo | Assignee: | Todd C. Miller <Todd.Miller> |
| Status: | ASSIGNED --- | ||
| Severity: | enhancement | ||
| Priority: | low | ||
| Version: | 1.8.21 | ||
| Hardware: | All | ||
| OS: | All | ||
|
Description
Scott
2019-03-12 10:17:00 MDT
sudoers rules are evaluated in order where the last match wins. Include files are processed in the order in which they appear in the file. That is, when an include directive is found, evaluation is suspended until parsing of the included file is completed. In the case of includedir directives, those are processed in sorted lexical order. This is all detailed in the "Including other files from within sudoers" section of the sudoers manual page. Thanks. I was hoping to resolve this without complicating the configuration more than it already is (aka, creating more include files than already present, when the issue exists within a single config file). We'll go this route, then. |