Skip to main content

Linux find files that requires sudo or root access

Root access on a Linux operating system is needed, if you need to maintain the server or if something goes wrong and requires some changes that only root account is able to do.

However, sudo can be used to give certain access to files that can be managed by specific users.

For example, for whatever reason the system requires changing the DNS server IP address. Then sudo can be used to grant editing privileges to /etc/resolv.conf

If just curious what are the files that require sudo or root access, on a Linux VM or server. Find command be used to locate or identify files that requires root privileges.

On Linux VM, by typing: sudo id root
This will show the output below:
uid=0(root) gid=0(root) groups=0(root)

The output shows that the user id for root is 0, and it's the same with group id and any other groups.
Technically, 0 (zero) is the id for any files on the Linux system that is owned by root or requires root to modify or make some changes.

For example, by typing: cd /etc and executing vi nanorc
A window will open with the nanorc configuration, and at the bottom it will show "nanorc" [readonly] if the file was opened via vi without root or sudo access.

sudo practice is good in a production environment, so making undesired changes can be avoided. But always running sudo when everything is in a hurry can also be annoying.

To get the files that requires root or sudo access can be done by using the "find" command.

Example, cd /etc and once inside the /etc directory type:
find . -user 0 -group 0

The command will show all files that requires root or sudo access to make a successful change.

The command will list all files that require root or sudo access for successful modification. It can also be useful for identifying unwanted or potentially malicious files on the system; files that necessitate root or sudo access but are not expected to be present, or owned by root warrant further investigation.








When everything seems too hard to understand, rely not on your own understanding but have faith and trust in God's plan. For His plan and His will is better than any human understanding.

Comments

Popular posts from this blog

Print error 016-799 - Fuji Film Xerox

016-799 Fuji Xerox or Fuji Film print error code. That shows a description error as “Print instruction Fail detected in decomposer.” The error code and error description are alien languages for users and even system administrators who are not familiar with Fuji Xerox error code. The error code is quite simple and easy to fix, if the job print goes to the printer but print out doesn’t come out. So, basically the print job was received by the printer, but the printer just doesn’t know what type of paper or what size to use or which tray to utilize for the print out. In some instances, this is just a paper mismatch but the error description; if using Windows 10 to print does not exactly points to what is the issue. First thing to check, is the paper size selected by the user to print. Example, if the printer configuration is A3 and A4 sizes only. But then the person printing the file accidentally chooses “A4 Cover” then this error 016-799 will occur. ...

WMIC get computer name

WMIC get computer model, manufacturer, computer name and  username. WMIC is a command-line tool and that can generate information about computer model, its manufacturer, its username and other informations depending on the parameters provided. Why would you need a command line tool if there’s a GUI to check? If you have 20 or 100 computers, or even more. It’s quite a big task just checking the GUI to check the computer model and username. If you have remote computers, you need to delegate someone in the remote office or location to check. Or you can just write a batch file or script to automate the task. Here’s the code below on how get computer model, manufacturer and the username. Open an elevated command prompt and type:     wmic computersystem get "Model","Manufacturer", "Name", "UserName" Just copy and paste the code above, the word “computersystem” does not need to be change to a computer name. A...

Delete Directories with Wildcards using rd or rmdir

  Deleting files in command prompt using wildcards is quite straight forward. Command below will delete all text (".txt") files on the specified path.      Del D:\txtlog\*.txt Command above will delete all files with ".txt" extension in d:\txtlog directory. Easy enough to delete all matching files. Using the same method with rmdir or rd command this will not work. For example, if we have a directory on d drive that is auto-generated by an application and the filename is consistent with a pattern plus incrementing number at the end to differentiate the folder from other folders.    D:\baklogs\log1\    D:\baklogs\log2\    D:\baklogs\log3\    Etc..    D:\baklogs\log100\ The folder name has a consistent pattern that is preceded by the word “log” plus incrementing number. If the command below is executed to remove the directories in one go, an error is shown which h...