Running nagios as root

Roy Sigurd Karlsbakk roy at karlsbakk.net
Wed Oct 8 15:45:57 CEST 2003


normally, ping should have the SUID set and owned by by root, as to be
allowed to use ICMP ping

On Wed, 2003-10-01 at 19:33, Marc Powell wrote:
> That's actually a really bad idea. The simpler and better solution is to
> make ping and fping executable by the nagios user --
> 
> [root at betelgeuse bes]# ls -al /bin/ping 
> -rwsr-xr-x    1 root     root        35192 Apr 18  2002 /bin/ping
> [root at betelgeuse bes]# ls -l /usr/local/sbin/fping
> -rwsr-xr-x    1 root     root        83254 Nov 15  2002
> /usr/local/sbin/fping
> 
> chmod 4755 /bin/ping /usr/local/sbin/fping
> 
> --
> Marc
> 
> ________________________________________
> From: R. F. [mailto:visigoth at home.nl] 
> Sent: Wednesday, October 01, 2003 11:56 AM
> To: nagios-users at lists.sourceforge.net
> 
> Hi, I've been messing with Nagios for a week now and I can't get it to
> access/execute /bin/ping or /usr/local/sbin/fping. So I was wondering,
> is it wise to run Nagios as root? Is there a way to do it safely? If so,
> how, because it looks like the only option for me :(
> 
> Thanks.
> 
> 
> -------------------------------------------------------
> This sf.net email is sponsored by:ThinkGeek
> Welcome to geek heaven.
> http://thinkgeek.com/sf
> _______________________________________________
> Nagios-users mailing list
> Nagios-users at lists.sourceforge.net
> https://lists.sourceforge.net/lists/listinfo/nagios-users
> ::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
> ::: Messages without supporting info will risk being sent to /dev/null



-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
Welcome to geek heaven.
http://thinkgeek.com/sf
_______________________________________________
Nagios-users mailing list
Nagios-users at lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/nagios-users
::: Please include Nagios version, plugin version (-v) and OS when reporting any issue. 
::: Messages without supporting info will risk being sent to /dev/null





More information about the Users mailing list