Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 22 Jan 2001 12:35:55 +0200
From:      "Niekie Myburgh (QData)" <niekie@rcf.co.za>
To:        'Stijn Hoop' <stijn@win.tue.nl>
Cc:        "'freebsd-stable@freebsd.org'" <freebsd-stable@freebsd.org>, "'freebsd-hackers@freebsd.org'" <freebsd-hackers@freebsd.org>
Subject:   RE: PAM (was: Re: MAIL set by whom?)
Message-ID:  <C7F233BFBFFBD211A4370000E220291A1BF309@ntnr2>

index | next in thread | raw e-mail

[-- Attachment #1 --]
I posted a question about PAM & Passwd on 4.2.  It seems that passwd
"ignores" any passwd lines in pam.conf.  I tried the pam.d thing (Run Linux
compatibility, copy rc.d/* from Redhat 6.1 to BSD.  When you try to log in,
the login terminates, and syslog shows:

/kernel: pid 22202 (login), uid 0: exited on siglan 10 (core dumped)

Rename pam.d, and all is happy (which means I'm back to pam.conf).

I have 300Mb swap (all unused) and 26Mb RAM inactive.  I don't think that
memory / out of swap space is the problem in this case. (I gather from what
I could see on the net, that the main culprit for signal 10 seems to be swap
space / memory)

Can anyone give me an example line for the passwd entry in pam.conf (seems
to be happier, although it seems to ignore my changes)

I'm using the following:

passwd		password	required		pam_xxxxxxx
options_options......

I tried pam_cracklib.so with it's options, as well as pam_passwdqc and it's
options.  I am being ignored.

Regards.

Niekie





> -----Original Message-----
> From:	Stijn Hoop [SMTP:stijn@win.tue.nl]
> Sent:	Monday, January 22, 2001 12:07 PM
> To:	Dominic Mitchell
> Cc:	freebsd-stable@freebsd.org; freebsd-hackers@freebsd.org
> Subject:	Re: PAM (was: Re: MAIL set by whom?)
> 
> On Mon, Jan 22, 2001 at 09:46:47AM +0000, Dominic Mitchell wrote:
> > Would it be a good idea to start using /etc/pam.d ala RedHat, instead of
> > the monolithic /etc/pam.conf?
> > 
> > As far as I can see the support is already there, it's just not being
> > used due to the presence of the /etc/pam.conf.
> > 
> > This would make installing PAM entries far easier for the ports.
> 
> Seconded. I don't see any reason *not* to do it this way.
> 
> OTOH, ports are not supposed to install in /etc, so the best way would
> be to extend pam to support /usr/local/etc/pam.d *and* /etc/pam.d
> (if it doesn't already do this).
> 
> No, I'm not sending patches, sorry :)
> 
> --Stijn
> 
> -- 
> Nostalgia ain't what it used to be.
> 
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-hackers" in the body of the message

[-- Attachment #2 --]
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=US-ASCII">
<META NAME="Generator" CONTENT="MS Exchange Server version 5.5.2652.35">
<TITLE>RE: PAM (was: Re: MAIL set by whom?)</TITLE>
</HEAD>
<BODY>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">I posted a question about PAM &amp; Passwd on 4.2.&nbsp; It seems that passwd &quot;ignores&quot; any passwd lines in pam.conf.&nbsp; I tried the pam.d thing (Run Linux compatibility, copy rc.d/* from Redhat 6.1 to BSD.&nbsp; When you try to log in, the login terminates, and syslog shows:</FONT></P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">/kernel: pid 22202 (login), uid 0: exited on siglan 10 (core dumped)</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">Rename pam.d, and all is happy (which means I'm back to pam.conf).</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">I have 300Mb swap (all unused) and 26Mb RAM inactive.&nbsp; I don't think that memory / out of swap space is the problem in this case. (I gather from what I could see on the net, that the main culprit for signal 10 seems to be swap space / memory)</FONT></P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">Can anyone give me an example line for the passwd entry in pam.conf (seems to be happier, although it seems to ignore my changes)</FONT></P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">I'm using the following:</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">passwd&nbsp; &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; password&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; required&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; pam_xxxxxxx options_options......</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">I tried pam_cracklib.so with it's options, as well as pam_passwdqc and it's options.&nbsp; I am being ignored.</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">Regards.</FONT>
</P>

<P><FONT COLOR="#0000FF" SIZE=2 FACE="Arial">Niekie</FONT>
</P>
<BR>
<BR>
<BR>
<BR>
<UL>
<P><FONT SIZE=1 FACE="Arial">-----Original Message-----</FONT>
<BR><B><FONT SIZE=1 FACE="Arial">From:&nbsp;&nbsp;</FONT></B> <FONT SIZE=1 FACE="Arial">Stijn Hoop [SMTP:stijn@win.tue.nl]</FONT>
<BR><B><FONT SIZE=1 FACE="Arial">Sent:&nbsp;&nbsp;</FONT></B> <FONT SIZE=1 FACE="Arial">Monday, January 22, 2001 12:07 PM</FONT>
<BR><B><FONT SIZE=1 FACE="Arial">To:&nbsp;&nbsp;&nbsp;&nbsp;</FONT></B> <FONT SIZE=1 FACE="Arial">Dominic Mitchell</FONT>
<BR><B><FONT SIZE=1 FACE="Arial">Cc:&nbsp;&nbsp;&nbsp;&nbsp;</FONT></B> <FONT SIZE=1 FACE="Arial">freebsd-stable@freebsd.org; freebsd-hackers@freebsd.org</FONT>
<BR><B><FONT SIZE=1 FACE="Arial">Subject:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</FONT></B> <FONT SIZE=1 FACE="Arial">Re: PAM (was: Re: MAIL set by whom?)</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">On Mon, Jan 22, 2001 at 09:46:47AM +0000, Dominic Mitchell wrote:</FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; Would it be a good idea to start using /etc/pam.d ala RedHat, instead of</FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; the monolithic /etc/pam.conf?</FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; </FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; As far as I can see the support is already there, it's just not being</FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; used due to the presence of the /etc/pam.conf.</FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; </FONT>
<BR><FONT SIZE=2 FACE="Arial">&gt; This would make installing PAM entries far easier for the ports.</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">Seconded. I don't see any reason *not* to do it this way.</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">OTOH, ports are not supposed to install in /etc, so the best way would</FONT>
<BR><FONT SIZE=2 FACE="Arial">be to extend pam to support /usr/local/etc/pam.d *and* /etc/pam.d</FONT>
<BR><FONT SIZE=2 FACE="Arial">(if it doesn't already do this).</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">No, I'm not sending patches, sorry :)</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">--Stijn</FONT>
</P>

<P><FONT SIZE=2 FACE="Arial">-- </FONT>
<BR><FONT SIZE=2 FACE="Arial">Nostalgia ain't what it used to be.</FONT>
</P>
<BR>

<P><FONT SIZE=2 FACE="Arial">To Unsubscribe: send mail to majordomo@FreeBSD.org</FONT>
<BR><FONT SIZE=2 FACE="Arial">with &quot;unsubscribe freebsd-hackers&quot; in the body of the message</FONT>
</P>
</UL>
</BODY>
</HTML>
help

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?C7F233BFBFFBD211A4370000E220291A1BF309>