<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0">
<channel>
<title><![CDATA[向东博客 专注WEB应用 构架之美 --- 构架之美，在于尽态极妍 | 应用之美，在于药到病除]]></title> 
<link>http://jackxiang.com/index.php</link> 
<description><![CDATA[赢在IT，Playin' with IT,Focus on Killer Application,Marketing Meets Technology.]]></description> 
<language>zh-cn</language> 
<copyright><![CDATA[向东博客 专注WEB应用 构架之美 --- 构架之美，在于尽态极妍 | 应用之美，在于药到病除]]></copyright>
<item>
<link>http://jackxiang.com/post//</link>
<title><![CDATA[Linux chattr命令参数及使用方法详解]]></title> 
<author>jack &lt;xdy108@126.com&gt;</author>
<category><![CDATA[Unix/LinuxC技术]]></category>
<pubDate>Tue, 19 Jul 2016 09:32:16 +0000</pubDate> 
<guid>http://jackxiang.com/post//</guid> 
<description>
<![CDATA[ 
	背景：发现用ansible去做sudo时，发现权限不够：<br/>TASK [irdcops : 修改 /etc/sudoers] ***********************************************<br/>skipping: [10.70.37.24]<br/>fatal: [10.70.36.172]: FAILED! =&gt; &#123;&quot;changed&quot;: false, &quot;failed&quot;: true, &quot;msg&quot;: &quot;Could not replace file: /tmp/tmpfToWiS to /etc/sudoers: [Errno 1] Operation not permitted&quot;&#125;<br/>fatal: [10.70.36.173]: FAILED! =&gt; &#123;&quot;changed&quot;: false, &quot;failed&quot;: true, &quot;msg&quot;: &quot;Could not replace file: /tmp/tmpvA5FJh to /etc/sudoers: [Errno 1] Operation not permitted&quot;&#125;<br/><br/><br/>[root@v-szq-Localizationweb13 etc]# chmod 755 sudoers<br/>chmod: changing permissions of `sudoers&#039;: Operation not permitted<br/>[root@v-szq-Localizationweb13 etc]# lsattr sudoers<br/>----i--------e- sudoers<br/>[root@v-szq-Localizationweb13 etc]#&nbsp;&nbsp;chattr -i sudoers<br/>[root@v-szq-Localizationweb13 etc]# visudo<br/><br/>http://www.linuxeye.com/command/chattr.html<br/><br/><br/><textarea name="code" class="php" rows="15" cols="100">
lsattr&nbsp;&nbsp;/etc/sudoers
----i--------e- /etc/sudoers
</textarea><br/><br/>去掉保护命令：<br/><textarea name="code" class="php" rows="15" cols="100">
lsattr&nbsp;&nbsp;/etc/sudoers
chattr -i /etc/sudoers
xiangdong ALL=(ALL) NOPASSWD: ALL
chattr +i /etc/sudoers
</textarea><br/><br/><textarea name="code" class="php" rows="15" cols="100">
chattr -i /etc/shadow
chattr -i /etc/passwd
chattr -i /etc/group
chattr -i /etc/sudoers
chattr -i /etc/gshadow&nbsp;&nbsp;
</textarea><br/><br/>黑客最容易修改这个sshd：<br/><textarea name="code" class="php" rows="15" cols="100">
chattr -i /usr/sbin/sshd
</textarea><br/><br/>Form:http://jackxiang.com/post/1792/
]]>
</description>
</item><item>
<link>http://jackxiang.com/post//#blogcomment</link>
<title><![CDATA[[评论] Linux chattr命令参数及使用方法详解]]></title> 
<author> &lt;user@domain.com&gt;</author>
<category><![CDATA[评论]]></category>
<pubDate>Thu, 01 Jan 1970 00:00:00 +0000</pubDate> 
<guid>http://jackxiang.com/post//#blogcomment</guid> 
<description>
<![CDATA[ 
	
]]>
</description>
</item>
</channel>
</rss>