From ae3f86c3e18a225ac20dfb9a3edc9f37eb6cd3ac Mon Sep 17 00:00:00 2001 From: Hua Liu <58683130+liuh-80@users.noreply.github.com> Date: Mon, 27 Mar 2023 17:08:14 -0700 Subject: [PATCH] Improve sudo cat command for RO user. (#14428) Improve sudo cat command for RO user. RO user can use sudo command show none syslog files. Improve sudo cat command for RO user. Pass all UT. Manually check fixed code work correctly. Improve sudo cat command for RO user. --- files/image_config/sudoers/sudoers | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/files/image_config/sudoers/sudoers b/files/image_config/sudoers/sudoers index 966252712c5..9bd1b043be7 100644 --- a/files/image_config/sudoers/sudoers +++ b/files/image_config/sudoers/sudoers @@ -36,7 +36,7 @@ Cmnd_Alias READ_ONLY_CMDS = /sbin/brctl show, \ /usr/bin/vtysh -c show version, \ /usr/bin/vtysh -c show bgp ipv[46] summary json, \ /usr/bin/vtysh -n [0-9] -c show version, \ - /bin/cat /var/log/syslog*, \ + /bin/cat /var/log/syslog, /bin/cat /var/log/syslog.1 /var/log/syslog, /bin/cat /var/log/syslog.1, \ /usr/bin/tail -F /var/log/syslog Cmnd_Alias PASSWD_CMDS = /usr/bin/config tacacs passkey *, \