http://qa.mandrakesoft.com/show_bug.cgi?id=2438
Product: pam_ldap
Component: pam_ldap
Summary: applie a patch to allow a filter for each program using
pam
Version: 156-1mdk
Platform: PC
OS/Version: All
Status: UNCONFIRMED
Severity: enhancement
Priority: P4
AssignedTo: [EMAIL PROTECTED]
ReportedBy: [EMAIL PROTECTED]
Debian applie a patch which allow to use a filter with pam_ldap.so.
To give a example, you put pam_ldap.so filter=(ssh_allowed=yes) in
/etc/pam.d/ssh to restrict ssh to user having the attribute ssh_allowed to
yes.
The advantage is that the filter can be different for each usage of the
module, instead of being in the global configuration file.
The patch is here since 106 version, and has been sent to the mainstream, who
didn't answered.
The patch and more info can be found here.
http://www.netsys.com/pamldap/2001/05/msg00039.html
and here
http://www.netsys.com/pamldap/2001/05/msg00040.html
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.