Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 01 Feb 2015 05:55:50 +0000
From:      Glen Barber <gjb@FreeBSD.org>
To:        Ansar Mohammed <ansarm@gmail.com>,freebsd-bugs@freebsd.org
Subject:   Re: pam_krb5 broken
Message-ID:  <FF61EB39-F518-4C39-B14C-9E4C20EE9754@FreeBSD.org>
In-Reply-To: <CAOO1MfvvBC_981C4kwdu8mSiZ%2BYyQGo6g=GMeL-haQU4urBz_A@mail.gmail.com>
References:  <CAOO1MfvvBC_981C4kwdu8mSiZ%2BYyQGo6g=GMeL-haQU4urBz_A@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On February 1, 2015 12:46:48 AM EST, Ansar Mohammed <ansarm@gmail.com> wrote:
>Hello There,
>I am testing the pam_krb5 module on FreeBSD 10.1.
>it seems that the code to save the Kerberos ticket on disk is broken.
>The call to pam_get_data in pam_sm_setcred is failing.
>As a result a user can login with Kerberos but running kinit does not
>show any cached tickets.
>
>I was reviewing the apple code here :
>http://www.opensource.apple.com/source/pam_modules/pam_modules-76/pam_krb5/pam_krb5.c
>and that appears insanely broken. I think they were also trying to fix
>the same error as they replaced pam_get_data/pam_set_data with
>pam_getenv/pam_setenv (but only halfway through the code)

Please file a bug report so this does not get lost.


Glen
-- 
Sent from my phone.
Please excuse my brevity and/or typos.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?FF61EB39-F518-4C39-B14C-9E4C20EE9754>