Hi,
I get this output when I run ‘sudo -l’. I used ansible_user=testuser in the host inventory file to connect to the remote server.
sudo -l
Subject to Corporate’s Global Employee and Global Contingent Worker Privacy Notices
(see https://employeecontent.Corporate.com/content/corp/Global_Employee_and_Global_Contingent_Worker_Privacy.html )
all system access and delegated/privileged activity on the Corporate network
may be logged for auditing and security purposes, including your username
and commands used. Log records may be retained for up to 1 year.
We trust you have received the usual lecture from the local System
Administrator. It usually boils down to these three things:
#1) Respect the privacy of others.
#2) Think before you type.
#3) With great power comes great responsibility.
Remember you may use ‘sudo -l’ to review a list of authorized commands.
Authenticate with testuser’s password:
Matching Defaults entries for testuser on testhost:
syslog=local3, !set_home, !targetpw, !insults, mailto=alert-sudo, !mail_always, ignore_dot, timestamp_timeout=5,
listpw=always, !lecture_file, passprompt="Authenticate with %u’s password: ", always_set_home, !env_reset,
umask_override, !root_sudo, !tty_tickets, fqdn, listpw=always, env_delete+=USER_ITOOLS, env_delete+=PROJECT_ITOOLS,
env_delete+=KRB5CCNAME, env_delete+=XAUTHORITY, lecture=always, lecture_file=/nfs/site/gen/adm/ec_global/sudo.lecture,
passprompt="Authenticate with %u’s password: ", always_set_home, !env_reset, umask_override, !root_sudo, !tty_tickets,
fqdn, listpw=always, env_delete+=USER_ITOOLS, env_delete+=PROJECT_ITOOLS, env_delete+=KRB5CCNAME
User testuser may run the following commands on testhost:
(root) /usr/Corporate/bin/rootsh, /usr/Corporate/bin/rootsh2, /usr/Corporate/bin/rootsh1
(root) NOPASSWD: /usr/Corporate/common/pkgs/vas-helper/1.0/exe//idchange
(root) NOPASSWD: /usr/Corporate/common/pkgs/vas-helper/1.0/bin/krb-helper
(root) /bin/cat /var/log/messages, /usr/bin/cat /var/log/messages, /bin/dmesg
(kerberostest) NOPASSWD: /usr/bin/sudo /bin/date, /usr/bin/sudo -l, /usr/Corporate/bin/sudo /bin/date, /usr/Corporate/bin/sudo -l
(root) NOPASSWD: /nfs/iil/gen/adm/netbatch/util/nbconfig/nbconfig
(root) NOPASSWD: /nfs/iil/gen/adm/nbtools/bin/nblock.pl
(root) NOPASSWD: /nfs/iil/local/common/bin/lsdir.amd
(root) NOPASSWD: /usr/local/common/bin/lsdir.amd
(profusr) NOPASSWD: /nfs/site/gen/itec/profiling/utils/profiler/profiler_post,
/nfs/site/gen/itec/profiling/utils/profiler/benchmarking_post
(root) NOPASSWD: /usr/Corporate/common/pkgs/acctusers/CURRENT/bin/acctusers
(root) NOPASSWD: /usr/Corporate/common/pkgs/acctusers/1.1/bin/acctusers
(root) /nfs/site/gen/adm/ec_global/customerSudo/SLES12SP2upgrader.sh
(root) NOPASSWD: /nfs/site/gen/adm/emulation/Global/scripts/virt_modules/startVirt.sh,
/p/emulation/virt_modules/startVirt.sh, /p/emulation/virt_modules/start_virt
(root) NOPASSWD: /usr/Corporate/common/pkgs/vas-helper/1.0/bin/krb-helper
(root) NOPASSWD: /usr/Corporate/common/pkgs/vas-helper/1.0/exe//idchange