Public bug reported:

Binary package hint: libpam-runtime


This is not a problem that affects users and/or current configuration, but it 
could be improved for the sake of clarity 
and preventing mistakes in the future (especially when users/admin decide to 
modify pam.d/*).

Right now there's a set if requires in pam configuration, but there's no 
default 'require pam_deny.so' in any 
common-auth/common-password/common-session/common-account file. Rather than 
assuming there's going to 
be a required entry which will make the stack fail eventually it would be safe 
to include pam_deny.so as a requirement 
for a safe fallback.

** Affects: pam (Ubuntu)
     Importance: Undecided
         Status: New

-- 
pam configuration could use safer defaults
https://bugs.launchpad.net/bugs/152912
You received this bug notification because you are a member of Ubuntu
Bugs, which is the bug contact for Ubuntu.

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to