In article <[EMAIL PROTECTED]>,
Matthew Sean Thyer  <[EMAIL PROTECTED]> wrote:

> > The way PAM works, that will let _anybody_ login via rsh without a
> > password.  I don't think it's what you want.
>
> Wont this only happen when rshd becomes PAMerised ? or has that
> happened already ?

I haven't been following PAM closely as it is now maintained by Mark
Murray <[EMAIL PROTECTED]>.  Also, I never use rsh.  But rshd must
have been PAMerized already -- otherwise it couldn't emit the messages
you reported.

> If its already been done, why the console messages ?

Probably you got the messages because your pam.conf file wasn't
up-to-date.  Here's what I see in "src/etc/pam.conf":

    # r-utils are broken; ensure this doesn't bother folk
    rshd    auth    sufficient      pam_deny.so

These lines were added on January 4th by markm.

John
-- 
  John Polstra                                               [EMAIL PROTECTED]
  John D. Polstra & Co., Inc.                        Seattle, Washington USA
  "Disappointment is a good sign of basic intelligence."  -- Chögyam Trungpa



To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-current" in the body of the message

Reply via email to