New PAM code landing (at last)

Frank Cusack fcusack at fcusack.com
Sun May 11 20:03:48 EST 2003


On Sun, May 11, 2003 at 09:54:09AM +1000, Damien Miller wrote:
> Frank Cusack wrote:
> > On Sat, May 10, 2003 at 09:51:57PM +1000, Damien Miller wrote:
> > 
> >>I think that this may be very difficult to do with privsep, as we have
> >>long since given up root privs by the time we start the session. Of
> >>course, I'd like to be proved wrong...
> > 
> > The FreeBSD diff, as posted a few months ago, did exactly this.  What
> > has changed since then?
> 
> The FreeBSD PAM code doesn't touch the session setup. Never did IIRC.

Yup, sorry 'bout that.

/fc




More information about the openssh-unix-dev mailing list