Matt Selsky wrote:

We patched imapd and pop3d to use a slightly different different PAM service name if using an insecure login. Then we had PAM check a group to see if that user was still permitted to use insecure services. When we finally had all users doing secure logins we removed the patch. This patch changes the PAM service name and syslogs the insecure logins for POP3. You can do something very similar for IMAP, but I don't have that patch handy.


Thnak you Matt,

Does anyone have an example of a similar PAM patch or could point to the righ parts of the code that need to be modified, etc? This would certainly make our implementation easier.

Best,

-Erik Kangas
_______________________________________________
Imap-uw mailing list
[email protected]
https://mailman1.u.washington.edu/mailman/listinfo/imap-uw

Reply via email to