PAM overrides PermitEmptyPasswords

mouring at etoh.eviladmin.org mouring at etoh.eviladmin.org
Fri Sep 7 08:53:01 EST 2001


auth-pam.c  in auth_pam_password() already checks for this case in the
current CVS tree.  If it still occurs in the current tree than it should
be addressed within auth_pam_password().  Otherwise you need to check
and fix auth1.c and auth2.c.


- Ben

On Thu, 6 Sep 2001, Adam McKenna wrote:

> I noticed while investigating Debian Bug #93200
> (http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=93200&repeatmerged=yes)
> that sshd refuses a login if /etc/pam.d/ssh doesn't specify "nullok" after
> the pam_unix.so module -- is there any way to resolve this problem?  It seems
> that OpenSSH should override PAM in this case, someone posted a patch on 6/19
> that appears to address this problem,
> (http://marc.theaimsgroup.com/?l=openssh-unix-dev&m=99293778402235&w=2)
> is there any chance this will be fixed in the next release?
>
> Thanks,
>
> --Adam
> --
> Adam McKenna <adam at flounder.net>   | GPG: 17A4 11F7 5E7E C2E7 08AA
> http://flounder.net/publickey.html |      38B0 05D0 8BF7 2C6D 110A
>




More information about the openssh-unix-dev mailing list