tmpfs.tech · all tracks · Security & TLS

Harden Sudo Defaults

Security & TLS · medium · solved in-browser (no VM needed) · 3 tiered hints

Write /etc/sudoers.d/00-defaults, a sudoers drop-in of Defaults lines that: keep a secure PATH via 'Defaults secure_path="/usr/sbin:/usr/bin:/sbin:/bin"', require a tty for sudo with 'Defaults requiretty', and log sudo I/O to /var/log/sudo-io with 'Defaults log_output' and 'Defaults iolog_dir=/var/log/sudo-io'. (Authored config, graded structurally — the engine isn't run here.)

▶ Start this challenge

Nobody has solved this one yet — be the first clear on the leaderboard.

How it works

Open the challenge and an in-page editor appears — write your answer and tmpfs.tech grades it server-side against the same checks a real box would run. No VM, no install, no signup needed to try.

More Security & TLS challenges

Certificates, signatures, hardening sshd and verifying trust.

See all Security & TLS challenges →

FAQ

Is it free? Yes — play as a guest, no signup required to start.

Do I need to install anything? No. Everything runs in your browser.

How is it graded? Automatically and deterministically — your work is checked against the exact rules the live box would apply.