Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 19 Jan 2002 22:46:23 +0300
From:      "Andrey A. Chernov" <ache@nagual.pp.ru>
To:        Mark Murray <mark@grondar.za>
Cc:        Dag-Erling Smorgrav <des@ofug.org>, cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: For all who miss it, PAM changes explanation reposted
Message-ID:  <20020119194623.GA13476@nagual.pp.ru>
In-Reply-To: <200201191924.g0JJOgt23714@grimreaper.grondar.org>
References:  <20020119190636.GE12683@nagual.pp.ru> <200201191924.g0JJOgt23714@grimreaper.grondar.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, Jan 19, 2002 at 19:24:42 +0000, Mark Murray wrote:
> 
> This means that "stuff" needed to authenticate the user is insufficient.
> (For example, in a two-password scenario where only one password has
> been supplied). If you can use that meaning, then fine! (Note that
> "insufficient" != "wrong").

From some point of view it is true, i.e. pam_opie decides by itself that 
all following auth will be insufficient and breaks out of the chain.

> cannot. This may be a problem in its own right, in which case PAM
> (core PAM) needs to be fixed. If _that_ is the case, this this needs
> to be carefully thought out and co-ordinated through DES and myself.

Maybe yes, probably PAM core needs to be fixed to provide more descriptive
error code.

-- 
Andrey A. Chernov
http://ache.pp.ru/

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020119194623.GA13476>