Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 11 Jun 1998 22:38:11 -0700
From:      Mike Smith <mike@smith.net.au>
To:        The Hermit Hacker <scrappy@hub.org>
Cc:        Terry Lambert <tlambert@primenet.com>, isp@FreeBSD.ORG, current@FreeBSD.ORG
Subject:   Re: Radius login via getty 
Message-ID:  <199806120538.WAA00405@antipodes.cdrom.com>
In-Reply-To: Your message of "Thu, 11 Jun 1998 22:30:45 EDT." <Pine.BSF.3.96.980611222849.12029A-100000@hub.org> 

next in thread | previous in thread | raw e-mail | index | archive | help
> On Fri, 12 Jun 1998, Terry Lambert wrote:
> > > 	Actually, I believe that solaris is moving towards using PAM for
> > > all this too...each of the above, I believe, already has a pam module out
> > > there for it...
> > 
> > PAM has a number of known problems.
> > 
> > Use SASL instead.  Unlike PAM, thee is an RFC for SASL.
> 
> 	Boy, does that ever make alot of sense...both Solaris and Linux
> are adopting PAM as their authentication schemes, and are designing
> various modules for it, but let's adopt something because, hey, it has an
> RFC?

This is the "20 million flies" argument.  PAM is broken as designed; 
implementing it might be expedient, but will never be "right".

-- 
\\  Sometimes you're ahead,       \\  Mike Smith
\\  sometimes you're behind.      \\  mike@smith.net.au
\\  The race is long, and in the  \\  msmith@freebsd.org
\\  end it's only with yourself.  \\  msmith@cdrom.com



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-current" in the body of the message



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199806120538.WAA00405>