Replace sudo by dzdo.
If enabled, sudo commands will be redirected to dzdo. Dzdo will determine whether these commands are allowed or not according to the role assignment settings.
This group policy only works for zones which support DirectAuthorize. For instance, Auto zone and NULL zone are not supported.
Note that /usr/share/centrifydc/bin should be set as the first search directory of environment variable PATH. Also /usr/share/centrifydc/man should be set as the first search directory of environment variable MANPATH.
Default is disabled, i.e. dzdo will not replace sudo.
Registry Hive | HKEY_LOCAL_MACHINE |
Registry Path | Software\Policies\Centrify\CentrifyDC\Settings\Dzdo |
Value Name | dzdo.replace.sudo |
Value Type | REG_SZ |
Enabled Value | true |
Disabled Value | false |