OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Giacomo Mulas (gmulas_at_ca.astro.it)
Date: Wed Oct 02 2002 - 10:25:03 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

            since openssh v3.3 was released, I never got it to work well with
    PAM. I think it has something to do with privilege separation, whereby
    the listening daemon is unable to use PAM due to insufficient privileges,
    since it is running as an unprivileged user. Is PAMAuthenticationViaKbdInt
    enabled? Try disabling just that. From README.Debian in
    /usr/share/doc/ssh:

    "Unfortunately, privilege separation interacts badly with PAM. Any PAM
    session modules that need to run as root (pam_mkhomedir, for example)
    will fail, and PAM keyboard-interactive authentication won't work."

    Bye
    Giacomo

    -- 
    _________________________________________________________________
    

    Giacomo Mulas <gmulasca.astro.it, giacomo.mulastin.it> _________________________________________________________________

    OSSERVATORIO ASTRONOMICO DI CAGLIARI Str. 54, Loc. Poggio dei Pini * 09012 Capoterra (CA)

    Tel.: +39 070 71180 248 Fax : +39 070 71180 222 _________________________________________________________________

    "When the storms are raging around you, stay right where you are" (Freddy Mercury) _________________________________________________________________

    -- To UNSUBSCRIBE, email to debian-security-requestlists.debian.org with a subject of "unsubscribe". Trouble? Contact listmasterlists.debian.org