[Gllug] SULOG

Dean dean.wilson3 at virgin.net
Fri Nov 2 12:48:53 UTC 2001


On Fri, Nov 02, 2001 at 02:00:58AM +0000, David Irvine wrote:
> > It's not foolproof, and someone might find the hidden binary either
> > by stumbling across it by accident, or by deliberately searching for
> > setuid root files on the whole file system. But it'll track 99.9% of
> > all people using su.

> You could take that a  bit further and write it into the su code so that
> anybody who su's would be  logged.

This is what is supposed to happen and is driving me nuts, the Solaris and
HPUX su log the user that user-name that did the su and the user-name it
su'ed into. From what i can tell the older version of the Linux one did the
same. I can write a wrapper script or use a named pipe but it just seems a
bit unneeded.

I may end up trying to patch the su binary (But if you've seen my C you'll
understand why I'm hesitant ;))

	Dean
-- 
Profanity is the one language all programmers understand
   --- Anon

-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list