On Mon, 17 May 2010, Timo Juhani Lindfors wrote: > Santiago Vila <sanv...@unex.es> writes: > > Ok, what about PAM? > > "UsePAM no" is the default in openssh. I do not know if this is just > to reduce the attack surface.
Grr. We are supposed to be system integrators, but how can we do that if some parts of the system do not trust the other parts of the system? That results in useless duplication of work. Do I really have to put complex code in /etc/profile to use the old umask when 1 <= uid <= 100? Instead, we could consider as a bug that a "system user" wants to login to the system at all. -- To UNSUBSCRIBE, email to debian-devel-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org Archive: http://lists.debian.org/alpine.deb.1.10.1005171539550.16...@kolmogorov.unex.es