OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [suse-security] postfix/imap/cyrus-sasl and Pam backend - PARTLY SOLVED!

From: Andreas Winkelmann (mlawinkelmann.de)
Date: Fri Mar 12 2004 - 08:53:20 CST


Am Freitag, 12. März 2004 15:40 schrieb Markus Feilner:

> and /etc/pam.d/smtp:
> auth required pam_permit.so
> account required pam_permit.so
> session required pam_permit.so
> password required pam_permit.so
> and the same for /etc/pam.d/imap and /etc/pam.d/pop

???? pam_permit ???? You know what it is?

> Now smtp, imap and pop work - with:
> smtp: tls+plain
> pop: ssl+plain
> imap:tls+"einfacher text" -Whatever that means...
>
> Can i make that more secure?

Use a real pam-module. And force tls/ssl.

--
        Andreas

--
Check the headers for your unsubscription address
For additional commands, e-mail: suse-security-helpsuse.com
Security-related bug reports go to securitysuse.de, not here