Re: SASL and SHADOW

2001-08-09 Thread Marco Colombo
On Thu, 9 Aug 2001, Tyrone Vaughn wrote: > I did search the archives and the closest solution I can find is to > abandon checking the shadow file via PAM and run the program "pwcheck" > as the root user -- something I don't want to do. > > If you know the answer, would you please forward it on to

Re: SASL and SHADOW

2001-08-09 Thread Rob Tanner
PAM has no special privleges. PAM library call run with the same privilege level as the calling program. Therefore, not even the user 'cyrus' can authenticate without permissions set to 444. With that said and your obvious experience to the contrary, are you talking about cyrus authenticati

Re: SASL and SHADOW

2001-08-09 Thread Tyrone Vaughn
I did search the archives and the closest solution I can find is to abandon checking the shadow file via PAM and run the program "pwcheck" as the root user -- something I don't want to do. If you know the answer, would you please forward it on to me? Thanks. Tyrone Amos Gouaux wrote: > >

Re: SASL and SHADOW

2001-08-09 Thread Amos Gouaux
> On Thu, 09 Aug 2001 08:40:58 -0500, > Tyrone Vaughn <[EMAIL PROTECTED]> (tv) writes: tv> I have done six implementations of Cyrus (2.0.11 - 2.0.16) and in each tv> one I have the same problem. No user, other than cyrus, can tv> authenticate unless I make the shadow file 444 verses it o