On Mon, Sep 30, 2002 at 12:05:24PM -0700, Otto Jongerius wrote:
There are 2 (and probably more ways) how to achieve only wheel from being able to use su. You already tried the first the second is to add the following line to /etc/pam.d/su: auth required /lib/security/pam_wheel.so group=wheel Does this work for you? Maybe someone more familliar with Suse could explain why chgrp-ing /bin/su to wheel, and then chmod-ing it 4750 does not work for you..
just guessing: some cronjob? SuSEConfig? sorry, no 8.x box handy. but: SuSE has the concept of /etc/permissons{,.easy,.secure,.paranoid,.local} files, so try and list your desired local settings in /etc/permissions.local, do a chkstat -set /etc/permissions.local and grep in suses config files for CHECK_PERMISSIONS PERMISSION_SECURITY or the like (thus named where the variables in /etc/rc.config prior to 8.0) to make it persistent. cheers, Lars-Gunnar