<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic PAM problem with chroot &amp;amp; sudo in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/pam-problem-with-chroot-amp-sudo/m-p/4210357#M733833</link>
    <description>Hi Gurus,&lt;BR /&gt;&lt;BR /&gt;I need to create a "chrooted" account named "indus" on HP-UX 11.11&lt;BR /&gt;&lt;BR /&gt;I create a chroot shell for this account:&lt;BR /&gt;&lt;BR /&gt;# vi /bin/chroot-shell&lt;BR /&gt;#!/bin/sh&lt;BR /&gt;/opt/iexpress/sudo/bin/sudo /usr/sbin/chroot /home/indus /bin/su - indus &lt;BR /&gt;&lt;BR /&gt;I put /bin/chroot/shell as the connexion shell for user "indus" on /etc/passwd&lt;BR /&gt;&lt;BR /&gt;After this I created all the directories, binaries and library files needed by "indus" in his jail environment&lt;BR /&gt;&lt;BR /&gt;Then I give "indus" the right to make a chroot command by invoking visudo and adding the line below:&lt;BR /&gt;&lt;BR /&gt;indus  ALL= NOPASSWD: /usr/sbin/chroot /home/indus /bin/su - indus&lt;BR /&gt;&lt;BR /&gt;When trying to be connected as user"indus" I get the following error:&lt;BR /&gt;&lt;BR /&gt;pam_start: Check /etc/pam.conf&lt;BR /&gt;su: Sorry&lt;BR /&gt;&lt;BR /&gt;Any help please, I prefer using sudo not RBAC</description>
    <pubDate>Wed, 04 Jun 2008 09:46:13 GMT</pubDate>
    <dc:creator>b-rachid</dc:creator>
    <dc:date>2008-06-04T09:46:13Z</dc:date>
    <item>
      <title>PAM problem with chroot &amp; sudo</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/pam-problem-with-chroot-amp-sudo/m-p/4210357#M733833</link>
      <description>Hi Gurus,&lt;BR /&gt;&lt;BR /&gt;I need to create a "chrooted" account named "indus" on HP-UX 11.11&lt;BR /&gt;&lt;BR /&gt;I create a chroot shell for this account:&lt;BR /&gt;&lt;BR /&gt;# vi /bin/chroot-shell&lt;BR /&gt;#!/bin/sh&lt;BR /&gt;/opt/iexpress/sudo/bin/sudo /usr/sbin/chroot /home/indus /bin/su - indus &lt;BR /&gt;&lt;BR /&gt;I put /bin/chroot/shell as the connexion shell for user "indus" on /etc/passwd&lt;BR /&gt;&lt;BR /&gt;After this I created all the directories, binaries and library files needed by "indus" in his jail environment&lt;BR /&gt;&lt;BR /&gt;Then I give "indus" the right to make a chroot command by invoking visudo and adding the line below:&lt;BR /&gt;&lt;BR /&gt;indus  ALL= NOPASSWD: /usr/sbin/chroot /home/indus /bin/su - indus&lt;BR /&gt;&lt;BR /&gt;When trying to be connected as user"indus" I get the following error:&lt;BR /&gt;&lt;BR /&gt;pam_start: Check /etc/pam.conf&lt;BR /&gt;su: Sorry&lt;BR /&gt;&lt;BR /&gt;Any help please, I prefer using sudo not RBAC</description>
      <pubDate>Wed, 04 Jun 2008 09:46:13 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/pam-problem-with-chroot-amp-sudo/m-p/4210357#M733833</guid>
      <dc:creator>b-rachid</dc:creator>
      <dc:date>2008-06-04T09:46:13Z</dc:date>
    </item>
  </channel>
</rss>

