Auditing 'sudoers'

From: Johnson, Chad (CJohnson4@tiaa-cref.org)
Date: Mon Mar 17 2008 - 07:06:04 EST


Well, as we all can thank Mr. Sarbanes and Mr. Oxley for the additional
'job security' tasks it has not been without it's challenges and now I'm
faced with another which I'm SURE has come up with others.

We are now being asked for a 'formatted' and 'machine parsable' feed
outlining who has what access where sudo is concerned. As you can
imagine, the somewhat 'free form' nature of the sudoers file makes this
less than straight forward. Before I begin coding I figured I would
reach out and see if anyone has written this before of knows of a tool
for this purpose.

If you have any sources or 'ready made' tools for this I would really
appreciate hearing about it!

Thanks,

Chad Johnson

*****************************************************************************
***************
This message, including any attachments, contains confidential information
intended
for a specific individual and purpose, and is protected by law. If you are not
the intended
recipient, please contact the sender immediately by reply e-mail and destroy
all copies.
You are hereby notified that any disclosure, copying, or distribution of this
message, or
the taking of any action based on it, is strictly prohibited.

TIAA-CREF
*****************************************************************************
***************
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:42:52 EDT