New PAM code landing (at last)

Damien Miller djm at mindrot.org
Sun May 11 09:54:09 EST 2003


Frank Cusack wrote:
> On Sat, May 10, 2003 at 09:51:57PM +1000, Damien Miller wrote:
> 
>>I think that this may be very difficult to do with privsep, as we have
>>long since given up root privs by the time we start the session. Of
>>course, I'd like to be proved wrong...
> 
> The FreeBSD diff, as posted a few months ago, did exactly this.  What
> has changed since then?

The FreeBSD PAM code doesn't touch the session setup. Never did IIRC.

-d





More information about the openssh-unix-dev mailing list