OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Controlling PAM modules

From: Ivan Grover (ivangrvr299gmail.com)
Date: Wed Sep 17 2008 - 06:53:06 CDT


Hi All,
I am trying to use few modules such as
pam_radius - does remote authentication
pam_abl - to lock users/ IP addresses

My Problem is , Do i have any standard way to skip one of the PAM module
with out changing the service conf file.
Suppose i dont want to enable locking of users, then one solution i can
think of is to share a common database across application and pam modules.
The application sets the flag which indicates, if pam_able is included or
not. Then pam_abl module will look into this database and then return simply
PAM_SUCCESS always or process the user lockouts.

Please advise/comment

Best Regards,
Ivan.
_______________________________________________
freebsd-securityfreebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribefreebsd.org"