Bugzilla will be upgraded to version 5.0 on a still to be determined date in the near future. The original upgrade date has been delayed.
Bug 921 - Making PAM let only members of wheel su root [pam_wheel.so]
Making PAM let only members of wheel su root [pam_wheel.so]
Product: Red Hat Linux
Classification: Retired
Component: pam (Show other bugs)
i386 Linux
medium Severity medium
: ---
: ---
Assigned To: Michael K. Johnson
Depends On:
  Show dependency treegraph
Reported: 1999-01-22 12:21 EST by dwayne
Modified: 2008-05-01 11:37 EDT (History)
2 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Last Closed: 1999-03-26 16:52:16 EST
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---

Attachments (Terms of Use)

  None (edit)
Description dwayne 1999-01-22 12:21:59 EST
This is just a note to anyone wanting to have only members
of the wheel group su root.  By default RedHat has the GID
of the wheel group set to be 10.  However, PAM assumes it's
0.  Even if you change the file /etc/group (and /etc/group-
for good measure) so that wheel has GID=0, it still doesn't
work (for me at least :)  However by placing group=wheel at
the end of the first auth line, all will be well!  So the
auth lines of /etc/pam.d/su should be something like:

auth  required  /lib/security/pam_wheel.so group=wheel
auth  required  /lib/security/pam_pwdb.so shadow nullok
Comment 1 Preston Brown 1999-03-26 14:57:59 EST
Michael, has this been dealt with/fixed/worked around/whatever?
Comment 2 Michael K. Johnson 1999-03-26 16:52:59 EST
This is not a bug and does not need to be dealt with/fixed/worked

Note You need to log in before you can comment on or make changes to this bug.