> Yeah, currently you have to be careful to start sshd outside of a PAG
> when using libpam-openafs-session (with, for instance, "echo

Plus you need to make sure, your users end up in session-specific pag's.
While this is not strictly necessary, it's quite inconvenient to have two
(possibly unrelated) ssh sessions to the same host, that share a pag. Like
someone already mentioned, this leads to situation where session #1 doing
an unlog also unlogs session #2, which is probably not what people would
expect.

I got all this now with pam_afs2.so. It's really very nice.

> /etc/init.d/sshd start | at now" if you still have at installed despite
> its security track record).

I don't have at and I already made the mistake of putting cron into my
shell's PAG, so I could not think of anything else except editing
/etc/inittab and running "telinit q". It works. =)

Cheers,
Juha

-- 
                 -----------------------------------------------
                | Juha Jäykkä, [EMAIL PROTECTED]                        |
                | home: http://www.utu.fi/~juolja/              |
                 -----------------------------------------------

Attachment: pgpFPPwl4oIdF.pgp
Description: PGP signature

Reply via email to