From owner-freebsd-questions@FreeBSD.ORG Mon May 18 12:16:46 2009 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id DA630106566B for ; Mon, 18 May 2009 12:16:46 +0000 (UTC) (envelope-from nvass9573@gmx.com) Received: from mail.gmx.com (unknown [213.165.64.42]) by mx1.freebsd.org (Postfix) with SMTP id 20F3C8FC08 for ; Mon, 18 May 2009 12:16:45 +0000 (UTC) (envelope-from nvass9573@gmx.com) Received: (qmail invoked by alias); 18 May 2009 12:16:44 -0000 Received: from ipa140.95.91.tellas.gr (EHLO [192.168.254.1]) [91.140.95.140] by mail.gmx.com (mp-eu003) with SMTP; 18 May 2009 14:16:44 +0200 X-Authenticated: #46156728 X-Provags-ID: V01U2FsdGVkX185wqt0ezY5niOE2LyP23de7IJlON/DM7wfug186v mONvxHS7QhP8RE Message-ID: <4A115183.8080100@gmx.com> Date: Mon, 18 May 2009 15:16:03 +0300 From: Nikos Vassiliadis User-Agent: Thunderbird 2.0.0.21 (Windows/20090302) MIME-Version: 1.0 To: alexus References: <6ae50c2d0905171301y2d92a7b1mc3598295de12ecc2@mail.gmail.com> In-Reply-To: <6ae50c2d0905171301y2d92a7b1mc3598295de12ecc2@mail.gmail.com> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit X-Y-GMX-Trusted: 0 X-FuHaFi: 0.66 Cc: "freebsd-questions@freebsd.org" Subject: Re: proftpd TLS X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 18 May 2009 12:16:47 -0000 alexus wrote: > i just enable TLS for my proftpd and in tls.log I'm getting following messages > > mod_tls/2.2.1[45739]: error locking passphrase into memory: Operation > not permitted > mod_tls/2.2.1[45739]: TLS/TLS-C requested, starting TLS handshake From the error message, I can suspect that proftpd tries to use mlock(2) to lock some page in physical memory. That's typical behavior with programs dealing with sensitive data, as passwords. The mlock system call can only by used by the superuser. Is proftpd running with superuser privileges? Nikos