Line 12... |
Line 12... |
12 |
User_Alias ADMWEB=apache # web server owner
|
12 |
User_Alias ADMWEB=apache # web server owner
|
13 |
User_Alias SMS=gammu_smsd # gammu-smsd owner
|
13 |
User_Alias SMS=gammu_smsd # gammu-smsd owner
|
14 |
|
14 |
|
15 |
# Cmnd alias specification
|
15 |
# Cmnd alias specification
|
16 |
Cmnd_Alias NET=/sbin/ip,/sbin/arping,/sbin/arp,/usr/sbin/tcpdump,/usr/local/bin/alcasar-watchdog.sh,/usr/local/bin/alcasar-dhcp.sh,/usr/local/bin/alcasar-dns-local.sh # network commands
|
16 |
Cmnd_Alias NET=/sbin/ip,/sbin/arping,/sbin/arp,/usr/sbin/tcpdump,/usr/local/bin/alcasar-watchdog.sh,/usr/local/bin/alcasar-dhcp.sh,/usr/local/bin/alcasar-dns-local.sh # network commands
|
17 |
Cmnd_Alias URPMI=/usr/sbin/urpmi,/usr/sbin/urpmi.update # packages managment
|
17 |
Cmnd_Alias URPMI=/usr/sbin/urpmi,/usr/sbin/urpmi.update # packages managment
|
18 |
Cmnd_Alias BYPASS=/usr/local/bin/alcasar-bypass.sh # authentication bypass
|
18 |
Cmnd_Alias BYPASS=/usr/local/bin/alcasar-bypass.sh # authentication bypass
|
19 |
Cmnd_Alias RADDB=/usr/bin/radwho,/usr/sbin/chilli_query # to manage users in command line
|
19 |
Cmnd_Alias RADDB=/usr/bin/radwho,/usr/sbin/chilli_query # manage users in command line
|
20 |
Cmnd_Alias SQL=/usr/local/bin/alcasar-mysql.sh # to export users database
|
20 |
Cmnd_Alias SQL=/usr/local/bin/alcasar-mysql.sh # export users database
|
21 |
Cmnd_Alias SYSTEM_BACKUP=/usr/local/bin/alcasar-conf.sh # to create conf backup file
|
21 |
Cmnd_Alias SYSTEM_BACKUP=/usr/local/bin/alcasar-conf.sh # create conf backup file
|
22 |
Cmnd_Alias EXPORT=/usr/local/bin/alcasar-archive.sh # to export/save the log files
|
22 |
Cmnd_Alias EXPORT=/usr/local/bin/alcasar-archive.sh # export/save the log files
|
23 |
Cmnd_Alias BL=/usr/local/bin/alcasar-bl.sh,/usr/local/bin/alcasar-file-clean.sh,/usr/local/bin/alcasar-url_filter_wl.sh,/usr/local/bin/alcasar-url_filter_bl.sh # to manage the filtering system
|
23 |
Cmnd_Alias BL=/usr/local/bin/alcasar-bl.sh,/usr/local/bin/alcasar-file-clean.sh,/usr/local/bin/alcasar-url_filter_wl.sh,/usr/local/bin/alcasar-url_filter_bl.sh # manage the filtering system
|
24 |
Cmnd_Alias NF=/usr/local/bin/alcasar-iptables.sh,/usr/sbin/ipset # to manage the firewall
|
24 |
Cmnd_Alias NF=/usr/local/bin/alcasar-iptables.sh,/usr/sbin/ipset # manage the firewall
|
25 |
Cmnd_Alias LOGOUT=/usr/local/bin/alcasar-logout.sh # to disconnect the users
|
25 |
Cmnd_Alias LOGOUT=/usr/local/bin/alcasar-logout.sh # disconnect the users
|
26 |
Cmnd_Alias UAM=/usr/local/bin/alcasar-uamallowed.sh # to manage the trusted websites (uamallowed)
|
26 |
Cmnd_Alias UAM=/usr/local/bin/alcasar-uamallowed.sh # manage the trusted websites (uamallowed)
|
27 |
Cmnd_Alias SERVICE=/usr/bin/systemctl,/usr/sbin/shutdown # to manage the linux services
|
27 |
Cmnd_Alias SERVICE=/usr/bin/systemctl,/usr/sbin/shutdown # manage the linux services
|
28 |
Cmnd_Alias GAMMU=/usr/local/bin/alcasar-sms.sh # to manage the SMS subsystem
|
28 |
Cmnd_Alias GAMMU=/usr/local/bin/alcasar-sms.sh # manage the SMS subsystem
|
29 |
Cmnd_Alias SSL=/usr/local/bin/alcasar-importcert.sh,/usr/local/bin/alcasar-letsencrypt.sh,/usr/local/bin/alcasar-https.sh,/usr/local/bin/alcasar-ldap.sh --import-cert * # to manage the certificates
|
29 |
Cmnd_Alias SSL=/usr/local/bin/alcasar-importcert.sh,/usr/local/bin/alcasar-letsencrypt.sh,/usr/local/bin/alcasar-https.sh,/usr/local/bin/alcasar-ldap.sh --import-cert * # manage the certificates
|
30 |
Cmnd_Alias HTDIGEST=/usr/local/bin/alcasar-profil.sh # to manage htdigest groups
|
30 |
Cmnd_Alias HTDIGEST=/usr/local/bin/alcasar-profil.sh # manage htdigest groups
|
31 |
Cmnd_Alias LOG_GEN=/usr/local/bin/alcasar-generate_log.sh # to create log PDF from ACC
|
31 |
Cmnd_Alias LOG_GEN=/usr/local/bin/alcasar-generate_log.sh # create log PDF from ACC
|
32 |
Cmnd_Alias LDAP=/usr/local/bin/alcasar-ldap.sh # to enable/disable LDAP connection
|
32 |
Cmnd_Alias LDAP=/usr/local/bin/alcasar-ldap.sh # enable/disable LDAP connection
|
33 |
Cmnd_Alias IOT_CAPTURE=/usr/local/bin/alcasar-iot_capture.sh # to enable/disable raw capture of Iot (pcap) --> in activity ACC page
|
33 |
Cmnd_Alias IOT_CAPTURE=/usr/local/bin/alcasar-iot_capture.sh # enable/disable raw capture of Iot (pcap) --> in activity ACC page
|
- |
|
34 |
Cmnd_Alias WIFI4EU=/usr/local/bin/alcasar-wifi4eu.sh # enable/disable wifi4eu integration (logo + snippet)
|
34 |
|
35 |
|
35 |
# Defaults specification
|
36 |
# Defaults specification
|
36 |
# Defaults syslog=auth
|
37 |
# Defaults syslog=auth
|
37 |
|
38 |
|
38 |
# Runas alias specification
|
39 |
# Runas alias specification
|
Line 48... |
Line 49... |
48 |
|
49 |
|
49 |
# Samples
|
50 |
# Samples
|
50 |
# %users ALL=/sbin/mount /cdrom,/sbin/umount /cdrom
|
51 |
# %users ALL=/sbin/mount /cdrom,/sbin/umount /cdrom
|
51 |
# %users localhost=/sbin/shutdown -h now
|
52 |
# %users localhost=/sbin/shutdown -h now
|
52 |
|
53 |
|
53 |
ADMWEB LAN_ORG=(root) NOPASSWD: NET,SYSTEM_BACKUP,SQL,BL,NF,EXPORT,RADDB,LOGOUT,UAM,SERVICE,GAMMU,SSL,HTDIGEST,LOG_GEN,LDAP,IOT_CAPTURE
|
54 |
ADMWEB LAN_ORG=(root) NOPASSWD: NET,SYSTEM_BACKUP,SQL,BL,NF,EXPORT,RADDB,LOGOUT,UAM,SERVICE,GAMMU,SSL,HTDIGEST,LOG_GEN,LDAP,IOT_CAPTURE,WIFI4EU
|
54 |
ADMIN LAN_ORG=(root) NOPASSWD: NET,URPMI,BYPASS,SYSTEM_BACKUP,SQL,EXPORT,SERVICE,SSL
|
55 |
ADMIN LAN_ORG=(root) NOPASSWD: NET,URPMI,BYPASS,SYSTEM_BACKUP,SQL,EXPORT,SERVICE,SSL
|
55 |
SMS LAN_ORG=(root) NOPASSWD: GAMMU
|
56 |
SMS LAN_ORG=(root) NOPASSWD: GAMMU
|