Package: libpam-ccreds
Severity: minor

Hi there,
I'm a happy pam_ccreds user! But there's a small problem with desktop
users... The password cache of pam_ccreds is only readable by root
which means that if a user's screensaver locks the desktop he/she
can't exit the screensaver until plugged to the office network! (as
gnome-screensaver cannot read the security cache)

I have no idea on how this can be fixed without compromising security,
maybe on SELinux systems a policy can be arranged so the cache is
readable by any process during PAM checks... dunno

I'll leave that up to you ;) In the meantime the workaround is easy:
Do not stop working at any time until you get back to the office! ;)

Cheers,
Marc

-- System Information:
Debian Release: lenny/sid
  APT prefers testing
  APT policy: (650, 'testing'), (600, 'unstable'), (500, 
'testing-proposed-updates'), (1, 'experimental')
Architecture: i386 (i686)

Kernel: Linux 2.6.26-1-686 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to