Restriction of the sudo command
authorities.
Does this look correct? And can I remove the wheel group from carte blanche sudo status?
+Casa-XXXX-iMac:~ XXXX$ sudo cat /etc/sudoers+
Password:
+# sudoers file.+
#
+# This file MUST be edited with the 'visudo' command as root.+
#
+# See the sudoers man page for the details on how to write a sudoers file.+
#
+# Host alias specification+
+# User alias specification+
+# Cmnd alias specification+
+# Defaults specification+
+Defaults env_reset+
+Defaults env_keep += "BLOCKSIZE"+
+Defaults env_keep += "COLORFGBG COLORTERM"+
+Defaults env_keep += " _CF_USER_TEXTENCODING"+
+Defaults env_keep += "CHARSET LANG LANGUAGE LC_ALL LC_COLLATE LC_CTYPE"+
+Defaults env_keep += "LC_MESSAGES LC_MONETARY LC_NUMERIC LC_TIME"+
+Defaults env_keep += "LINES COLUMNS"+
+Defaults env_keep += "LSCOLORS"+
+Defaults env_keep += "SSH AUTHSOCK"+
+Defaults env_keep += "TZ"+
+Defaults env_keep += "DISPLAY XAUTHORIZATION XAUTHORITY"+
+Defaults env_keep += "EDITOR VISUAL"+
+# Runas alias specification+
+# User privilege specification+
+root ALL=(ALL) ALL+
+%admin ALL=(ALL) ALL+
+# Uncomment to allow people in group wheel to run all commands+
+# %wheel ALL=(ALL) ALL+
+# Same thing without a password+
+# %wheel ALL=(ALL) NOPASSWD: ALL+
+# Samples+
+# %users ALL=/sbin/mount /cdrom,/sbin/umount /cdrom+
+# %users localhost=/sbin/shutdown -h now+
iMac 2.4 GHz Intel Core 2 Duo, 4 GB RAM, Mac OS X (10.5.7), Bootcamp 50 GB Windows 7