Sudo rules are enumerated at the start of sssd without sudo as active service

Solution Unverified - Updated -

Issue

  • I would like to check if the behavior of sssd is correct for sudo.
  • We see that all sudo rules are enumerated in cache without sudo running as active service when sssd starts.
  • This behavior is inconsistent with people, groups and netgroups, which are enumerated per request in cache.

Environment

  • Red Hat Enterprise Linux (RHEL) 6.4 and later
  • Red Hat Enterprise Linux (RHEL) 7
  • System Security Services Daemon (SSSD) 1.9.2 and later

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content