2.9.9p2 bug in PAM support

Damien Miller djm at mindrot.org
Thu Oct 4 10:25:16 EST 2001


On Fri, 28 Sep 2001, Greg wrote:

> FYI.  If pam_unix is used then at least one of PAM_TTY or PAM_RHOST must 
>    be set before calling pam_open_session or it's considered a 
> PAM_SESSION_ERR.

We set PAM_RHOST unconditionally, but it is not enough. Some stupid PAM
module use stdio when they aren't passed a PAM_TTY.

-d

-- 
| Damien Miller <djm at mindrot.org> \ ``E-mail attachments are the poor man's 
| http://www.mindrot.org          /   distributed filesystem'' - Dan Geer




More information about the openssh-unix-dev mailing list