HP-UX PAM with Trusted System patch

Lacoss-Arnold, Jason Jason.Lacoss-Arnold at AGEDWARDS.com
Wed Jul 17 21:46:50 EST 2002


Trusted HP-UX refers to any HP-UX running with the /tcb crap and various
other security related extentions.  On any of our systems from 10.20 through
11.11, you can go into SAM and choose "Convert to trusted system" or
somesuch.

-----Original Message-----
From: Darren Cole [mailto:dcole at keysoftsys.com]
Sent: Tuesday, July 16, 2002 8:06 PM
To: Dan Wanek; openssh-unix-dev at mindrot.org
Subject: Re: HP-UX PAM with Trusted System patch


The patch looks reasonable, but I don't believe Trust HP-UX has pam or at
least we don't have it on our machines.  I even asked around the office and
no one thinks we have pam on 10.26.  Are we mistaken or missing a patch? Or
are you talking about something version other than Trusted HP-UX 10.26?
Later version of HP-UX may have pam (I think 11i does), but I don't know of
any later version of Trusted HP-UX than 10.26.

Darren Cole

----- Original Message -----
From: "Dan Wanek" <dwanek at dexter.it-ias.depaul.edu>
To: <openssh-unix-dev at mindrot.org>
Sent: Tuesday, July 16, 2002 6:25 AM
Subject: HP-UX PAM with Trusted System patch


> I'm fairly new to the list and new to submitting patches.  Can someone
> please verify the attached patch for running a HP-UX Trusted System with
> PAM and OpenSSH 3.4p1?  The problem seemed to be that pam couldn't verify
> the user via __pamh after the call to permanently_set_uid in session.c.
> So I called do_pam_session prior to the call and added a function
> do_pam_set_tty in order to set the tty after allocation.
>
> --
> Dan Wanek
>
>

_______________________________________________
openssh-unix-dev at mindrot.org mailing list
http://www.mindrot.org/mailman/listinfo/openssh-unix-dev


***********************************************************************************
WARNING:  All e-mail sent to and from this address will be received or
otherwise recorded by the A.G. Edwards corporate e-mail system and is
subject to archival, monitoring or review by, and/or disclosure to,
someone other than the recipient.
************************************************************************************
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20020717/3c8255e3/attachment.html 


More information about the openssh-unix-dev mailing list