process denied to kill


 
Thread Tools Search this Thread
Operating Systems Solaris process denied to kill
# 8  
Old 11-25-2007
sudo is a software package, which allows to permit certain commands to be executed by certain users under a different user id (usually root).

Normally every process inherits all the rights (including the user id) from its father process. At the top of this chain is the login shell of the user originating the process. Example: you log on to a machine as user "foo". The system starts your login shell, which will run under your user id - foo. Now you start some program, say, ls. The father process of this ls is your login shell, therefore the ls runs with your user id too. If *you* (that is: your user id) are not allowed to read a directories contents this instance of ls won't be allowed too. If root would invoke the same ls to list this directory it would work, because root (and hence all processes started by root) is allowed to do that.

Sometimes it would be nice to allow users something which under normal circumstances only root is allowed. For instance: there is a directory where some people can write to. We appoint one of them to take care that anything superfluous in there is deleted to keep it clean. We have to give this person the power to even delete files which do not belong to him, just as root could do. We still would not want to give this person the same rights in other places, just in this directory.

To achieve this (and similar things) sudo was designed. It will grant a certain user root power for a certain command. "Command" in this case includes a specific command including even a certain set of options. For instance you can allow a user to issue an "ls -a" with root power but still forbid "ls -i" - that is, he can issue "ls -i", but only so with his own rights, not with the rights of root.

The operation is controlled by a file /etc/sudoers, which you will have to customize to your needs. There are four logical parts to it, three declarative ones and the rights definition itself:

Hosts: a list of hostnames
commands: a list of commands
users: a list of users
rights definitions

All the rights definitions in the file take the form of: allow user-group x the execution of command-list y on all hosts of the host-list z. The various lists are defined by declaration and can contain one or more entry, so to entitle one user with the right to execute one command on one host just create a user-list with the user as the single element, then a command-list with the command as single element, a host-list with the host as single element and finally bind these three together by creating the rights definition that allow the group to execute command-list on all hosts in host-list.

For further information consult the man page of sudo or the various how-tos floating around on the internet.

bakunin
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

Kill an specific process ID using the KILL and GREP commands

Good afternoon I need to KILL a process in a single command sentence, for example: kill -9 `ps -aef | grep 'CAL255.4ge' | grep -v grep | awk '{print $2}'` That sentence Kills the process ID corresponding to the program CAL255.4ge. However it is possible that the same program... (6 Replies)
Discussion started by: enriquegm82
6 Replies

2. Solaris

Cannot kill a process with kill -9

Hello everyone, I have a process that I want to kill. I have tried kill-9 PID but it doesn't work. I have tried preap PID but it doesn't work too. The parent of my process is the process whose PID is 1, so I can't kill it. My OS is a Solaris 9. Can anyone help me understand what's going... (3 Replies)
Discussion started by: adilyos
3 Replies

3. UNIX for Dummies Questions & Answers

Script to start background process and then kill process

What I need to learn is how to use a script that launches background processes, and then kills those processes as needed. The script successfully launches the script. But how do I check to see if the job exists before I kill it? I know my problem is mostly failure to understand parameter... (4 Replies)
Discussion started by: holocene
4 Replies

4. Shell Programming and Scripting

grep the process id and kill all the filtered process

Hi I want to write a shell script which can find the process id's of all the process and kill them eg: ps ax | grep rv_ 3015 ? S 0:00 /home/vivek/Desktop/rv_server 3020 ? S 0:00 /home/vivek/Desktop/rv_gps 3022 ? S 0:00 /home/vivek/Desktop/rv_show ... (7 Replies)
Discussion started by: vivek_naragund
7 Replies

5. Shell Programming and Scripting

Shell Script to Kill Process(number of process) Unix/Solaris

Hi Experts, we do have a shell script for Unix Solaris, which will kill all the process manullay, it used to work in my previous env, but now it is throwing this error.. could some one please help me to resolve it This is how we execute the script (and this is the requirement) ... (2 Replies)
Discussion started by: jonnyvic
2 Replies

6. Linux

Kill a process without using kill command

I want to Kill a process without using kill command as i don't have privileges to kill the process. I know the pid and i am using Linux 2.6.9 OS. (6 Replies)
Discussion started by: sudhamacs
6 Replies

7. Shell Programming and Scripting

Kill a process without using kill command

Sorry, posted the question in other forum. (0 Replies)
Discussion started by: sudhamacs
0 Replies

8. Programming

kill(0,-9) don't kill the process

Hi all i have simple c program , when i wish to kill the app im using kill(0,-9) , but it seams this command don't do any thing and the program. just ignore it . what im doing wrong here ? im using HP-UX ia64 Thanks (9 Replies)
Discussion started by: umen
9 Replies

9. Shell Programming and Scripting

how to start a process and make it sleep for 5 mins and then kill that process

how to start a process and make it sleep for 5 mins and then kill that process (6 Replies)
Discussion started by: shrao
6 Replies

10. UNIX for Advanced & Expert Users

When kill doesnt work, how to kill a process ?

Hi All, I am unable to kill a process using kill command. I am using HP-UX system. I have tried with kill -9 and i have root privilages. How can i terminate this daemon ? ? ? Regards, Vijay Hegde (3 Replies)
Discussion started by: VijayHegde
3 Replies
Login or Register to Ask a Question