A security administrator for Linux systems wants to implement a mechanism that allows certain users to temporarily execute commands with elevated privileges while maintaining an audit trail. Which of the following best achieves this objective?
Sudo (Superuser Do) allows users to execute specific commands with elevated privileges while maintaining detailed logs of all actions. Unlike su which switches the entire user session to root, sudo grants temporary elevated privileges only for specific commands. RBAC provides role-based permissions but lacks the command-by-command elevation with built-in auditing. Setuid allows programs to run with file owner permissions but doesn't offer the granular control and comprehensive audit trails that sudo provides for privilege escalation.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
Can you explain how sudo works in detail?
Open an interactive chat with Bash
What is the difference between sudo and su?
Open an interactive chat with Bash
What is RBAC and how does it relate to privilege management?
Open an interactive chat with Bash
ISC2 CISSP
Identity and Access Management (IAM)
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access