0e1944
From 06b46ae226fecd4188af372ac0ccd7aa582e21c8 Mon Sep 17 00:00:00 2001
0e1944
From: Tomas Sykora <tosykora@redhat.com>
0e1944
Date: Wed, 17 Aug 2016 10:12:11 +0200
0e1944
Subject: [PATCH] Sudo logs username root instead of realuser
0e1944
0e1944
RHEL7 sudo logs username root instead of realuser in /var/log/secure
0e1944
0e1944
Rebased from:
0e1944
Patch50: sudo-1.8.6p7-logsudouser.patch
0e1944
0e1944
Resolves:
0e1944
rhbz#1312486
0e1944
---
0e1944
 plugins/sudoers/logging.c | 14 +++++++-------
0e1944
 plugins/sudoers/sudoers.h |  1 +
0e1944
 2 files changed, 8 insertions(+), 7 deletions(-)
0e1944
0e1944
diff --git a/plugins/sudoers/logging.c b/plugins/sudoers/logging.c
0e1944
index 45cae67..74b2220 100644
0e1944
--- a/plugins/sudoers/logging.c
0e1944
+++ b/plugins/sudoers/logging.c
0e1944
@@ -104,7 +104,7 @@ do_syslog(int pri, char *msg)
a67eaf
      * Log the full line, breaking into multiple syslog(3) calls if necessary
a67eaf
      */
0e1944
     fmt = _("%8s : %s");
0e1944
-    maxlen = def_syslog_maxlen - (strlen(fmt) - 5 + strlen(user_name));
0e1944
+    maxlen = def_syslog_maxlen - (strlen(fmt) - 5 + strlen(sudo_user_name));
a67eaf
     for (p = msg; *p != '\0'; ) {
a67eaf
 	len = strlen(p);
a67eaf
 	if (len > maxlen) {
0e1944
@@ -120,7 +120,7 @@ do_syslog(int pri, char *msg)
a67eaf
 	    save = *tmp;
a67eaf
 	    *tmp = '\0';
a67eaf
 
a67eaf
-	    mysyslog(pri, fmt, user_name, p);
a67eaf
+	    mysyslog(pri, fmt, sudo_user_name, p);
a67eaf
 
a67eaf
 	    *tmp = save;			/* restore saved character */
a67eaf
 
0e1944
@@ -128,11 +128,11 @@ do_syslog(int pri, char *msg)
a67eaf
 	    for (p = tmp; *p == ' '; p++)
0e1944
 		continue;
a67eaf
 	} else {
a67eaf
-	    mysyslog(pri, fmt, user_name, p);
a67eaf
+	    mysyslog(pri, fmt, sudo_user_name, p);
a67eaf
 	    p += len;
a67eaf
 	}
0e1944
 	fmt = _("%8s : (command continued) %s");
0e1944
-	maxlen = def_syslog_maxlen - (strlen(fmt) - 5 + strlen(user_name));
0e1944
+	maxlen = def_syslog_maxlen - (strlen(fmt) - 5 + strlen(sudo_user_name));
a67eaf
     }
a67eaf
 
0e1944
     sudoers_setlocale(oldlocale, NULL);
0e1944
@@ -179,10 +179,10 @@ do_logfile(const char *msg)
0e1944
 	timestr = "invalid date";
0e1944
     if (def_log_host) {
0e1944
 	len = asprintf(&full_line, "%s : %s : HOST=%s : %s",
0e1944
-	    timestr, user_name, user_srunhost, msg);
0e1944
+	    timestr, sudo_user_name, user_srunhost, msg);
0e1944
     } else {
0e1944
 	len = asprintf(&full_line, "%s : %s : %s",
0e1944
-	    timestr, user_name, msg);
0e1944
+	    timestr, sudo_user_name, msg);
0e1944
     }
0e1944
     if (len == -1) {
0e1944
 	sudo_warnx(U_("%s: %s"), __func__, U_("unable to allocate memory"));
0e1944
@@ -746,7 +746,7 @@ send_mail(const char *fmt, ...)
a67eaf
 
0e1944
     if ((timestr = get_timestr(time(NULL), def_log_year)) == NULL)
0e1944
 	timestr = "invalid date";
0e1944
-    (void) fprintf(mail, "\n\n%s : %s : %s : ", user_host, timestr, user_name);
0e1944
+    (void) fprintf(mail, "\n\n%s : %s : %s : ", user_host, timestr, sudo_user_name);
a67eaf
     va_start(ap, fmt);
a67eaf
     (void) vfprintf(mail, fmt, ap);
a67eaf
     va_end(ap);
0e1944
diff --git a/plugins/sudoers/sudoers.h b/plugins/sudoers/sudoers.h
0e1944
index cfd5abb..c69a043 100644
0e1944
--- a/plugins/sudoers/sudoers.h
0e1944
+++ b/plugins/sudoers/sudoers.h
0e1944
@@ -180,6 +180,7 @@ struct sudo_user {
a67eaf
 /*
a67eaf
  * Shortcuts for sudo_user contents.
a67eaf
  */
a67eaf
+#define sudo_user_name		(sudo_user.pw->pw_name)
a67eaf
 #define user_name		(sudo_user.name)
a67eaf
 #define user_uid		(sudo_user.uid)
a67eaf
 #define user_gid		(sudo_user.gid)
0e1944
-- 
0e1944
2.7.4
0e1944