good news for solaris8 &3.4p1

Ben Lindstrom mouring at etoh.eviladmin.org
Tue Oct 8 13:20:09 EST 2002


Not so much a bug as in how things are handled between Linux PAM and
Solaris PAM.

Sadly this won't be fixed in 3.5 release coming out in the near future.

- Ben


On Mon, 7 Oct 2002, Philip Brown wrote:

> On Tue, Oct 08, 2002 at 10:39:55AM +1000, Darren Tucker wrote:
> > Philip Brown wrote:
> > > On the other hand, if UseLogin=yes
> > [snip]
> > > I'm not exactly sure which is the preferred one to use here :-)
> > > Any recommendations?
> >
> > You can't use X11 Forwarding with UseLogin. This may or may not matter
> > to you.
>
> Yes, it does matter. Thanks for pointing that out.
>
> Are there any underlying OS integration or security concerns I should be
> aware of though, when using PAM with  UseLogin=no  ?
>
> That whole "removing root credentials" warning seems to indicate a semi-good
> reason behind why that code was buried in #if 0
> There seems to possibly be a bug in PAM initialization by sshd, maybe?
>
> But not knowing much about PAM myself, I dunno
>
> _______________________________________________
> openssh-unix-dev at mindrot.org mailing list
> http://www.mindrot.org/mailman/listinfo/openssh-unix-dev
>




More information about the openssh-unix-dev mailing list