# Defaults settings that trigger callbacks Defaults fqdn Defaults runas_default=root Defaults tty_tickets Defaults umask=022 Defaults runchroot=/ Defaults logfile=/var/log/sudo Defaults log_format=json Defaults syslog=auth, syslog_badpri=alert, syslog_goodpri=notice Defaults syslog_maxlen=2048 Defaults !loglinelen, log_year, log_host Defaults !mailerpath, mailerflags="-t", mailfrom="sudo@sudo.ws", mailto="root@localhost", mailsub="*** Sudo information for %h ***" # All other Defaults settings Defaults long_otp_prompt Defaults ignore_dot Defaults !mail_always Defaults !mail_badpass Defaults !mail_no_user Defaults !mail_no_host Defaults !mail_no_perms Defaults !mail_all_cmnds Defaults lecture=always Defaults lecture_file=/etc/sudo.lecture Defaults authenticate Defaults root_sudo Defaults shell_noargs Defaults set_home Defaults always_set_home Defaults path_info Defaults insults Defaults !requiretty Defaults env_editor Defaults !rootpw Defaults !runaspw Defaults !targetpw Defaults use_loginclass Defaults set_logname Defaults !stay_setuid Defaults !preserve_groups Defaults timestamp_timeout=.5 Defaults passwd_timeout=5 Defaults passwd_tries=3 Defaults badpass_message="Take off, eh!" Defaults lecture_status_dir="/var/lib/sudo/lectured" Defaults timestampdir="/run/sudo/ts" Defaults timestampowner=root Defaults exempt_group=sudo Defaults passprompt="%p's sudo password: " Defaults passprompt_override Defaults secure_path="/usr/bin:/usr/sbin:/bin:/sbin" Defaults editor=/usr/bin/vi Defaults listpw=any Defaults verifypw=all Defaults noexec Defaults ignore_local_sudoers Defaults closefrom=3 Defaults closefrom_override Defaults !setenv Defaults env_reset Defaults env_check += "TERMCAP" Defaults !env_delete Defaults env_keep += "LANG LANGUAGE LINGUAS LC_* _XKB_CHARSET" #Defaults role #Defaults type Defaults env_file="/etc/environment" Defaults restricted_env_file="/etc/environment.sudo" Defaults sudoers_locale=C Defaults !visiblepw Defaults pwfeedback Defaults fast_glob Defaults umask_override Defaults log_input Defaults log_output Defaults compress_io Defaults use_pty #Defaults group_plugin Defaults iolog_dir="/var/log/sudo-io" Defaults iolog_file="%{seq}" Defaults set_utmp Defaults utmp_runas #Defaults privs #Defaults limitprivs Defaults !exec_background Defaults pam_service="sudo" Defaults pam_login_service="sudo-login" Defaults pam_setcred Defaults pam_session Defaults pam_acct_mgmt Defaults maxseq=2176782336 Defaults use_netgroups Defaults sudoedit_checkdir Defaults !sudoedit_follow Defaults always_query_group_plugin Defaults netgroup_tuple Defaults ignore_audit_errors Defaults ignore_iolog_errors Defaults ignore_logfile_errors Defaults !match_group_by_gid Defaults iolog_user=root Defaults iolog_group=root Defaults iolog_mode=0600 Defaults fdexec=digest_only Defaults !ignore_unknown_defaults Defaults command_timeout=7d8h30m10s Defaults user_command_timeouts Defaults iolog_flush Defaults syslog_pid Defaults timestamp_type=tty Defaults authfail_message="Learn to type!" Defaults case_insensitive_user Defaults case_insensitive_group Defaults log_allowed Defaults log_denied Defaults !log_servers Defaults log_server_timeout=10 Defaults log_server_keepalive Defaults !log_server_cabundle Defaults !log_server_peer_cert Defaults !log_server_peer_key Defaults !log_server_verify Defaults runas_allow_unknown_id Defaults runas_check_shell Defaults pam_ruser Defaults pam_rhost Defaults runcwd=~ Defaults !selinux Defaults !admin_flag