From owner-freebsd-security@FreeBSD.ORG Sat Sep 17 23:20:58 2011 Return-Path: Delivered-To: freebsd-security@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id B6600106564A for ; Sat, 17 Sep 2011 23:20:58 +0000 (UTC) (envelope-from idaho@bydgoszcz.wsinf.edu.pl) Received: from mail.bydgoszcz.wsinf.edu.pl (onm164.internetdsl.tpnet.pl [83.0.218.164]) by mx1.freebsd.org (Postfix) with ESMTP id 75FB68FC0C for ; Sat, 17 Sep 2011 23:20:58 +0000 (UTC) Received: from [127.0.0.1] (localhost [127.0.0.1]) by mail.bydgoszcz.wsinf.edu.pl (Postfix) with ESMTP id 8AFD6104B5; Sun, 18 Sep 2011 00:50:24 +0200 (CEST) Message-ID: <4E752431.9040002@bydgoszcz.wsinf.edu.pl> Date: Sun, 18 Sep 2011 00:50:25 +0200 From: =?UTF-8?B?xYF1a2FzeiBXxIVzaWtvd3NraQ==?= User-Agent: Mozilla/5.0 (Windows NT 6.1; rv:6.0.2) Gecko/20110902 Thunderbird/6.0.2 MIME-Version: 1.0 To: d@delphij.net References: <86boukbk8s.fsf@ds4.des.no> <4E738794.4050908@delphij.net> In-Reply-To: <4E738794.4050908@delphij.net> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 7bit X-Mailman-Approved-At: Sun, 18 Sep 2011 00:56:11 +0000 Cc: =?UTF-8?B?RGFnLUVybGluZyBTbcO4cmdyYXY=?= , Xin LI , freebsd-security@freebsd.org Subject: Re: Re: PAM modules X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 17 Sep 2011 23:20:58 -0000 W dniu 20:59, Xin LI pisze: >> We currently have a number of PAM modules in ports, and while some >> of them are specific to certain third-party software, many aren't. >> I believe we would benefit from importing at least some of these >> into base. My question is: which ones? > LDAP? (We do currently have some work on LDAP integration but not > sure if the community would be interested -- this would need an import > of stripped down OpenLDAP) and modifies OpenSSH to support public key > in LDAP directory. I'd love to see LDAP integration, I'm looking forward to it. -- Best regards, Lukasz Wasikowski