Re: RFC: pam_krb5: minimum_[ug]id options

2006-11-09 Thread Shaun Amott
On Thu, Nov 09, 2006 at 02:36:19PM +0300, Ruslan Ermilov wrote: > On Thu, Nov 09, 2006 at 01:18:44AM +, Shaun Amott wrote: > > Thanks for reviewing the patch. Here's an updated version with your > > suggestions incorporated. > > > Please don't remove me from Cc:. I prefer to receive directed

Re: RFC: pam_krb5: minimum_[ug]id options

2006-11-09 Thread Ruslan Ermilov
On Thu, Nov 09, 2006 at 01:18:44AM +, Shaun Amott wrote: > Thanks for reviewing the patch. Here's an updated version with your > suggestions incorporated. > Please don't remove me from Cc:. I prefer to receive directed replies, and I didn't ask for non-directed reply via setting the Mail-Foll

Re: RFC: pam_krb5: minimum_[ug]id options

2006-11-08 Thread Shaun Amott
Thanks for reviewing the patch. Here's an updated version with your suggestions incorporated. Shaun -- Shaun Amott // PGP: 0x6B387A9A "A foolish consistency is the hobgoblin of little minds." - Ralph Waldo Emerson Index: pam_krb5.8

Re: RFC: pam_krb5: minimum_[ug]id options

2006-11-08 Thread Ruslan Ermilov
On Wed, Nov 08, 2006 at 09:28:30PM +, Shaun Amott wrote: > While fiddling with PAM, it came to my attention that the pam_krb5 > module in some other (Linux?) PAM implementations supports, amongst > other things, a minimum_uid option. This makes it possible to skip over > Kerberos authentication

RFC: pam_krb5: minimum_[ug]id options

2006-11-08 Thread Shaun Amott
While fiddling with PAM, it came to my attention that the pam_krb5 module in some other (Linux?) PAM implementations supports, amongst other things, a minimum_uid option. This makes it possible to skip over Kerberos authentication for local system accounts, like so: authrequiredpam_krb5.