[Bug 442] sshd allows login via public-key when account locked

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Sun Feb 23 22:53:19 EST 2003


http://bugzilla.mindrot.org/show_bug.cgi?id=442

dtucker at zip.com.au changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
 Attachment #183 is|0                           |1
           obsolete|                            |



------- Additional Comments From dtucker at zip.com.au  2003-02-23 22:53 -------
Created an attachment (id=237)
 --> (http://bugzilla.mindrot.org/attachment.cgi?id=237&action=view)
Check for locked accounts, as specified by configure.

Patch take 2.  Regarding Damien's a)
* the man pages (mostly) refer to "passwd -l" as "locking the account"
* we respect locked accounts on some platforms (eg AIX, Tru64 w/SIA, PAM?)
* ssh-1.2.33 does "*LK*" checking so there is some precedent

Regarding b) see patch.  It moves most of the platform-dependant stuff to
configure.



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.




More information about the openssh-unix-dev mailing list