sudoers 格式

    User_Spec ::= User_List Host_List '=' Cmnd_Spec_List \
            (':' Host_List '=' Cmnd_Spec_List)*

    Cmnd_Spec_List ::= Cmnd_Spec |
                 Cmnd_Spec ',' Cmnd_Spec_List

    Cmnd_Spec ::= Runas_Spec? SELinux_Spec? Tag_Spec* Cmnd

    Runas_Spec ::= '(' Runas_List? (':' Runas_List)? ')'

    SELinux_Spec ::= ('ROLE=role' | 'TYPE=type')

    Tag_Spec ::= ('NOPASSWD:' | 'PASSWD:' | 'NOEXEC:' | 'EXEC:' |
            'SETENV:' | 'NOSETENV:' | 'LOG_INPUT:' | 'NOLOG_INPUT:' |
            'LOG_OUTPUT:' | 'NOLOG_OUTPUT:')

https://linux.die.net/man/5/sudoers

例:

    user ALL=NOPASSWD: /usr/local/bin/command,/usr/local/bin/command2
本页面最后修改于 2022-1-12,距今约 1259

Created By 三三好记性不如烂 Wiki - 人工大脑CC BY-SA or CC BY-NC-SA 4.0