Project

General

Profile

Actions

Feature #10915

closed

security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE

Added by Infra Weavers over 3 years ago. Updated over 3 years ago.

Status:
Resolved
Priority:
Normal
Category:
sudo
Target version:
-
Start date:
09/18/2020
Due date:
% Done:

100%

Estimated time:
Plus Target Version:

Description

We have a requirement to permit NRPE to run custom commands as root so that we can, for instance, monitor VPN connected clients and Snort alerts on given interfaces.
In order to do this, we need to add some definitions to the sudoers file for the nagios user, the NRPE process running under the nagios user.

We have made and tested an amendment to the security/pfSense-pkg-sudo package which adds the 'User: nagios' to the drop down list of available users when the `net-mgmt/pfSense-pkg-nrpe` package is installed.

This means we can add sudo definitions for the required checks and check the 'sudo' check box in the NRPE definition and have the check run successfully without any manual editing of /usr/local/etc/sudoers.

We've raised this request ready for creation of the PR.

Actions

Also available in: Atom PDF