From owner-freebsd-questions@FreeBSD.ORG Mon Feb 7 03:33:47 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 1124416A4CE for ; Mon, 7 Feb 2005 03:33:47 +0000 (GMT) Received: from outside.taborandtashell.net (sub18-33.member.dsl-only.net [63.105.18.33]) by mx1.FreeBSD.org (Postfix) with ESMTP id 4BFF243D45 for ; Mon, 7 Feb 2005 03:33:46 +0000 (GMT) (envelope-from tkelly-freebsd-questions@taborandtashell.net) Received: (qmail 32338 invoked from network); 6 Feb 2005 19:33:43 -0800 Received: from laptop.taborandtashell.net (HELO ?192.168.0.9?) (tkelly@192.168.0.9) by outside.taborandtashell.net with AES256-SHA encrypted SMTP; 6 Feb 2005 19:33:43 -0800 Message-ID: <4206E19B.6050503@taborandtashell.net> Date: Sun, 06 Feb 2005 19:33:47 -0800 From: Tabor Kelly User-Agent: Mozilla Thunderbird 1.0 (X11/20041230) X-Accept-Language: en-us, en MIME-Version: 1.0 To: Ned Harrison References: <200502061646.27199.nedsmailbox2@cox.net> In-Reply-To: <200502061646.27199.nedsmailbox2@cox.net> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit cc: freebsd-questions@freebsd.org Subject: Re: Very general shutdown question X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: tkelly-freebsd-questions@taborandtashell.net List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 07 Feb 2005 03:33:47 -0000 Ned Harrison wrote: > I run FreeBSD 5.3 on my home PC in a stand alone machine as a desktop. Is it > possible to set it up so an ordinary user can shut the system? I've created > a couple of accounts that are not in the wheel group so I can give friends > and house guests the chance to play on a non-Microsoft system. I don't want > to give them root access just to shut it down. > > None of the books which I have discuss using FreeBSD in this way. They are > mostly geared to setting up networks running it for businesses. Areas where > one may not want an ordinary user to be able to shutdown the machine. > However, I prefer having the machine off when I'm not on it. If it's not > possible that fine I can continue working around it like I do now. > > Thank you > Ned As you have probably noticed, their are lots of ways to do this. IMHO the easiest would be a SUID root script. That is a script owned by root that has the SUID (set user id) bit set. It should have one line: 'halt' (or whatever 'shutdown -*' you want). -- Tabor Kelly tkelly-freebsd-questions@taborandtashell.net http://tabor.taborandtashell.net