From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1S9FhB-0000O3-DT for garchives@archives.gentoo.org; Sun, 18 Mar 2012 12:58:49 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 7AFB9E096C; Sun, 18 Mar 2012 12:58:26 +0000 (UTC) Received: from mout.perfora.net (mout.perfora.net [74.208.4.195]) by pigeon.gentoo.org (Postfix) with ESMTP id E71E9E074C for ; Sun, 18 Mar 2012 12:56:39 +0000 (UTC) Received: from oxusltgw07.schlund.de (oxusltgw07.lxa.perfora.net [172.19.206.9]) by mrelay.perfora.net (node=mrus2) with ESMTP (Nemesis) id 0LuOpr-1SH3Tt2C3D-0115GM; Sun, 18 Mar 2012 08:56:38 -0400 Date: Sun, 18 Mar 2012 08:56:37 -0400 (EDT) From: "Bruce Hill, Jr." To: gentoo-user@lists.gentoo.org Message-ID: <741770489.812672.1332075397512.JavaMail.open-xchange@email.1and1.com> In-Reply-To: <4F65B776.2010002@coolmail.se> References: <4F64651E.6050803@gmail.com> <4F648D68.4040008@coolmail.se> <1806883435.820749.1332040317879.JavaMail.open-xchange@email.1and1.com> <4F65B776.2010002@coolmail.se> Subject: Re: [gentoo-user] KDE and permissions problems Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit X-Priority: 3 Importance: Medium X-Mailer: Open-Xchange Mailer v6.20.0-Rev36 X-Provags-ID: V02:K0:EJ2tZZBpb1ZJ+9CRhapoCkTmsVUyCLY33GwexIKv2hE epb/yNmuKIstZOPLZhizfgvG5TpSrJEQI6KinLh3DxrBqE2r+a x1QRzwL7ngGfFkh9DBOTEFfUW/5rj8DuAr9T9+l3+8tr4bzp4L uHhqN1cSUOpounT4vYj5Bjb+FCqVgt7OTSviu2HvtKqW910jku AgrWVXyaPE2ZCAwF/nD/+1qB3mzW4SRXBR36nercHX/ZHXdP+G s3wq+ztVzO8uj0rPnEnb8/o47N6AftAbb1PKrapRBZnfyreqiL rCkoMetPHr8o1/HRAfV4Vec0VN0YTkll2B35/nsSEHnJx7C/1y ym0EOrX/b1RlxRcebjS8OaCkk2zGVaXuaXrMq79yemEl9Acxvk oM993XYuYTPqi8QctZKZ3GGPniNUM4ALtFnusraBje6QTfQG+4 JfuGe X-Archives-Salt: 4c6de581-5199-4753-a70b-898094776e84 X-Archives-Hash: f17bbe4602e3ebfd25e73ab86f0f5346 On March 18, 2012 at 6:22 AM pk wrote: > On 2012-03-18 04:11, Bruce Hill, Jr. wrote: > > > Am I eternally confused? > > I have no idea... besides, eternity is a long time... ;-) > > > su - change user ID or become superuser > > > > It's not _only_ to become root (maybe theoretically if you only have one > > normal user). On a true multiuser system you can su (switch user) to any > > user. > > Yes, correct. Sorry if this was implied; I only talked about Dales > specific problem... > > > Since _every_ computer I own or have _ever_ built has -pam globally, pam is > > not a requirement to use su ... is it? > > Nope. Again, I was only trying to help Dale... If su is owned by > 'root.root' (user.group) I assumed that it's execution was controlled by > something else since it otherwise should be owned by 'root.wheel' > (unless you're part of the 'root' group, which I don't think is > recommended). If you're not running pam then I assume your 'su' is owned > by 'root.wheel'? > Best regards > > Peter K > The ownership is not changed, with user(s) where it's necessary (never on servers) in the wheel group. mingdao@t420 ~ $ ls -l /bin/su -rws--x--x 1 root root 53440 Oct 7 07:00 /bin/su mingdao@t420 ~ $ ls -l /usr/bin/sudo ---s--x--x 2 root root 71144 Feb 22 06:34 /usr/bin/sudo # less /etc/sudoers ## Same thing without a password %wheel ALL=(ALL) NOPASSWD: ALL mingdao@t420 ~ $ id uid=1000(mingdao) gid=1000(mingdao) groups=1000(mingdao),7(lp),10(wheel),16(cron),18(audio),19(cdrom),27(video),80(cdrw),85(usb),100(users),250(portage) The 'stuff' happens when you issue "visudo" and edit the above file. I've never studied this on Gentoo, but also have: -rwxr-xr-x 1 root root 180696 Feb 22 06:34 /usr/lib64/sudo/sudoers.so Meh ... too much to learn for an old dog like me. -- Happy Penguin Computers >`) 126 Fenco Drive ( \ Tupelo, MS 38801 ^^ 662-269-2706; 662-491-8613 support at happypenguincomputers dot com http://www.happypenguincomputers.com