On Tuesday, January 23, 2001 11:05:29 -0500, Jeff Blaine 
<[EMAIL PROTECTED]> wrote:
+-----
| Solaris PAM will make sure that one of the modules succeeds if they are
| all marked as 'optional', but why is this requirement in place?  This
| seems very broken to me.
|
| So broken, in fact, that in our testbed cell I changed ours to be:
|
|      login   auth  sufficient  /usr/lib/security/pam_afs.so
|      login   auth  required    /usr/lib/security/pam_unix.so.1
|
| And it works perfectly fine.
|
| What is going on here?  Could someone from Transarc (or anyone else)
| explain this?
+--->8

I do that as well, and it does work correctly.  But that and the failure to 
handle use_first_pass/try_first_pass makes me think that Transarc doesn't 
understand PAM.

-- 
brandon s. allbery     [os/2][linux][solaris][japh]   [EMAIL PROTECTED]
system administrator        [WAY too many hats]         [EMAIL PROTECTED]
electrical and computer engineering                                   KF8NH
carnegie mellon university     ["better check the oblivious first" -ke6sls]

Reply via email to