Re: It's not possible to allow non-OPIE logins only from trusted networks

2011-03-09 Thread J. Hellenthal
On Wed, 9 Mar 2011 09:51, mbox@ wrote: I think the way pam_opieaccess behaves is like "leave a security breach by default". I think it would be more usefull if it returned PAM_SUCCESS when: 1. The user does not have OPIE enabled and the remote host is listed as a trusted host in /etc/opieacces

It's not possible to allow non-OPIE logins only from trusted networks

2011-03-09 Thread Miguel Lopes Santos Ramos
Hi, This is about pam_opieaccess. Because there's no project page for OPIE outside FreeBSD and because I found other complaints on pam_opieaccess on this list (http://www.derkeiler.com/Mailing-Lists/FreeBSD-Security/2003-06/0118.html), I'm posting this here, I hope it's OK. For a few years now