about summary refs log tree commit diff
path: root/nixos/modules/programs/shadow.nix
diff options
context:
space:
mode:
authorobadz <dav-github@odav.org>2015-03-30 23:50:45 +0100
committerobadz <dav-github@odav.org>2015-03-30 23:50:45 +0100
commitbe7f104502cf6c6e5ae95f3af8c624cb436c7fd1 (patch)
tree474df6925010245dd39b9323fbe4f7b2437e21f2 /nixos/modules/programs/shadow.nix
parente07ea5cf77601325b16f51fb457b90d5aadfab6f (diff)
downloadnixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar.gz
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar.bz2
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar.lz
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar.xz
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.tar.zst
nixlib-be7f104502cf6c6e5ae95f3af8c624cb436c7fd1.zip
sg: add setuid wrapper. (newgrp is a symlink to sg and was already setuid).
sudo: add ability for wheel users to change group (as well as user)
Diffstat (limited to 'nixos/modules/programs/shadow.nix')
-rw-r--r--nixos/modules/programs/shadow.nix2
1 files changed, 1 insertions, 1 deletions
diff --git a/nixos/modules/programs/shadow.nix b/nixos/modules/programs/shadow.nix
index 5c2ea07c5549..895ecb122cb6 100644
--- a/nixos/modules/programs/shadow.nix
+++ b/nixos/modules/programs/shadow.nix
@@ -100,7 +100,7 @@ in
         chgpasswd = { rootOK = true; };
       };
 
-    security.setuidPrograms = [ "passwd" "chfn" "su" "newgrp"
+    security.setuidPrograms = [ "passwd" "chfn" "su" "sg" "newgrp"
       "newuidmap" "newgidmap"  # new in shadow 4.2.x
       ];