From owner-freebsd-bugs Sun May 6 5:40: 4 2001 Delivered-To: freebsd-bugs@hub.freebsd.org Received: from freefall.freebsd.org (freefall.freebsd.org [216.136.204.21]) by hub.freebsd.org (Postfix) with ESMTP id 6775637B424 for ; Sun, 6 May 2001 05:40:01 -0700 (PDT) (envelope-from gnats@FreeBSD.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.11.1/8.11.1) id f46Ce1J15867; Sun, 6 May 2001 05:40:01 -0700 (PDT) (envelope-from gnats) Received: from mailout01.sul.t-online.com (mailout01.sul.t-online.com [194.25.134.80]) by hub.freebsd.org (Postfix) with ESMTP id C77EA37B422 for ; Sun, 6 May 2001 05:39:04 -0700 (PDT) (envelope-from stolz@i2.informatik.rwth-aachen.de) Received: from fwd03.sul.t-online.com by mailout01.sul.t-online.com with smtp id 14wNoZ-0002wY-07; Sun, 06 May 2001 14:39:07 +0200 Received: from theater.dyndns.org (320068889749-0001@[62.226.0.12]) by fmrl03.sul.t-online.com with esmtp id 14wNob-1vg7iSC; Sun, 6 May 2001 14:39:09 +0200 Received: from monster.ikea.net (monster.ikea.net [192.168.2.3]) by theater.dyndns.org (8.11.3/8.11.3) with ESMTP id f46Ccq447792 for ; Sun, 6 May 2001 14:38:53 +0200 (CEST) (envelope-from stolz@i2.informatik.rwth-aachen.de) Received: (from vs@localhost) by monster.ikea.net (8.11.3/8.11.1) id f46Ce7119059; Sun, 6 May 2001 14:40:07 +0200 (CEST) (envelope-from vs) Message-Id: <200105061240.f46Ce7119059@monster.ikea.net> Date: Sun, 6 May 2001 14:40:07 +0200 (CEST) From: stolz@i2.informatik.rwth-aachen.de (Volker Stolz) To: FreeBSD-gnats-submit@freebsd.org X-Send-Pr-Version: 3.113 Subject: bin/27153: login(1) doesn´t call pam_open_session Sender: owner-freebsd-bugs@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org >Number: 27153 >Category: bin >Synopsis: session settings in pam.conf are ignored for login(1) >Confidential: no >Severity: serious >Priority: medium >Responsible: freebsd-bugs >State: open >Quarter: >Keywords: >Date-Required: >Class: sw-bug >Submitter-Id: current-users >Arrival-Date: Sun May 06 05:40:01 PDT 2001 >Closed-Date: >Last-Modified: >Originator: Volker Stolz >Release: FreeBSD 4.3-STABLE i386 >Organization: >Environment: System: FreeBSD monster.ikea.net 4.3-STABLE FreeBSD 4.3-STABLE #0: Sun May 6 11:38:07 CEST 2001 root@monster.ikea.net:/opt/src/sys/compile/MONOMO i386 >Description: login(1) will not call pam_open_session() and thus all entries regarding the session-layer of PAM are ignored. This includes pam_ssh which would set up an ssh-agent-environment. >How-To-Repeat: Install /usr/ports/security/pam_ssh, I didn´t get OpenSSH´s pam_ssh to work. Modify /etc/pam.conf to include login session required pam_ssh.so and log in: You will get no PAM session layer. >Fix: A simple fix would be to simply call pam_open_session(). However, this will trigger another bug regarding login/pam_getenvlist/pam_end. Please check for a subsequent PR. >Release-Note: >Audit-Trail: >Unformatted: To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-bugs" in the body of the message