On Sun, Mar 06, 2005 at 01:57:36AM +0100, Mariusz P?kala wrote

> Wouldn't some PAM magic skip over this?
> 
> auth       sufficient   /lib/security/pam_localuser.so
> 
> 
> Hovewer, if an attacker can configure PAM, she does not need an entry in
> /etc/passwd ;-)

  I got rid of PAM some time ago.  Total PITA for very little security
gain for a home user.  Mind you, if this was a system offering shell
access to outsiders, that would be a different story.

-- 
Walter Dnes <[EMAIL PROTECTED]>
An infinite number of monkeys pounding away on keyboards will
eventually produce a report showing that Windows is more secure,
and has a lower TCO, than linux.
--
[email protected] mailing list

Reply via email to