Re: 5.1 beta2 still in trouble with pam_ldap

From: Dag-Erling Smorgrav <des_at_ofug.org>
Date: Fri, 23 May 2003 21:54:45 +0200
Ruslan Ermilov <ru_at_FreeBSD.org> writes:
> Works for the generic case, but not for this particular example.
> Just run "shutdown -k now" locally, and watch how funny the login
> session looks.  I don't think we're leaking something here.  ;)
> Hm, or maybe this is just the problem with pam_nologin(8) not
> respecting the "no_warn" option?

hmm

I think you're right - in the nologin case, information leak isn't an
issue.  We should change it to requisite.  I need to go through the
policies and change "sufficient" to "binding" anyway, so I'll take
care of it once the freeze lifts.

DES
-- 
Dag-Erling Smorgrav - des_at_ofug.org
Received on Fri May 23 2003 - 10:54:49 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:37:09 UTC