<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sudo to restrict command execution in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6356021#M486111</link>
    <description>&lt;P&gt;Sudo is a good tool for allowing the users to execute some sets of commands &lt;STRONG&gt;as some other user&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But if you want to restrict the commands available for the users &lt;STRONG&gt;with their normal user accounts&lt;/STRONG&gt;, you will need a restricted shell.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;See "man sh-posix" on a HP-UX and read the paragraph titled "rsh Restrictions", or see "man ksh" and read the paragraph titled "rksh Only" for restricted ksh shell.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Basically:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;make copies of all the allowed commands, and place them to some directory (e.g. /usr/rbin)&lt;/LI&gt;&lt;LI&gt;configure the /etc/profile or the ~/.profile of the restricted users so that only that directory will be in their PATH&lt;/LI&gt;&lt;LI&gt;change the shell of the restricted users to /usr/bin/rsh or /usr/bin/rksh.&lt;/LI&gt;&lt;/OL&gt;</description>
    <pubDate>Wed, 29 Jan 2014 15:44:02 GMT</pubDate>
    <dc:creator>Matti_Kurkela</dc:creator>
    <dc:date>2014-01-29T15:44:02Z</dc:date>
    <item>
      <title>Sudo to restrict command execution</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6354915#M486103</link>
      <description>&lt;P&gt;Hi Experts ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;My requirement is i want to restrict users to executing commands.&lt;/P&gt;&lt;P&gt;I have 25 users in this server ,the requirement was that will execute only the list of commands (50 commands) ,and restrictall the commands.&lt;/P&gt;&lt;P&gt;Is this achived by sudo or from OS level any other options there.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jan 2014 21:19:26 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6354915#M486103</guid>
      <dc:creator>Ajin_1</dc:creator>
      <dc:date>2014-01-28T21:19:26Z</dc:date>
    </item>
    <item>
      <title>Re: Sudo to restrict command execution</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6356021#M486111</link>
      <description>&lt;P&gt;Sudo is a good tool for allowing the users to execute some sets of commands &lt;STRONG&gt;as some other user&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;But if you want to restrict the commands available for the users &lt;STRONG&gt;with their normal user accounts&lt;/STRONG&gt;, you will need a restricted shell.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;See "man sh-posix" on a HP-UX and read the paragraph titled "rsh Restrictions", or see "man ksh" and read the paragraph titled "rksh Only" for restricted ksh shell.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Basically:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;make copies of all the allowed commands, and place them to some directory (e.g. /usr/rbin)&lt;/LI&gt;&lt;LI&gt;configure the /etc/profile or the ~/.profile of the restricted users so that only that directory will be in their PATH&lt;/LI&gt;&lt;LI&gt;change the shell of the restricted users to /usr/bin/rsh or /usr/bin/rksh.&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 29 Jan 2014 15:44:02 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6356021#M486111</guid>
      <dc:creator>Matti_Kurkela</dc:creator>
      <dc:date>2014-01-29T15:44:02Z</dc:date>
    </item>
    <item>
      <title>Re: Sudo to restrict command execution</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6356707#M486112</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi MK ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you very much.&lt;/P&gt;&lt;P&gt;Really appriciate you.&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2014 04:30:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/sudo-to-restrict-command-execution/m-p/6356707#M486112</guid>
      <dc:creator>Ajin_1</dc:creator>
      <dc:date>2014-01-30T04:30:45Z</dc:date>
    </item>
  </channel>
</rss>

