Replace sudo by dzdo

Replace sudo by dzdo.

If enabled, sudo commands will be redirected to dzdo. Dzdo will determine whether these commands are allowed or not according to the role assignment settings.

This group policy only works for zones which support DirectAuthorize. For instance, Auto zone and NULL zone are not supported.

Note that /usr/share/centrifydc/bin should be set as the first search directory of environment variable PATH. Also /usr/share/centrifydc/man should be set as the first search directory of environment variable MANPATH.

Default is disabled, i.e. dzdo will not replace sudo.


Supported on:
Registry HiveHKEY_LOCAL_MACHINE
Registry PathSoftware\Policies\Centrify\CentrifyDC\Settings\Dzdo
Value Namedzdo.replace.sudo
Value TypeREG_SZ
Enabled Valuetrue
Disabled Valuefalse

centrifydc_settings.admx

Administrative Templates (Computers)

Administrative Templates (Users)