Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 30 Mar 2007 01:16:13 +0400
From:      Taras Savchuk <taras@elantech.ru>
To:        freebsd-stable@freebsd.org
Subject:   pam_group question/proposal
Message-ID:  <460C2C9D.5050508@elantech.ru>

next in thread | raw e-mail | index | archive | help
I tried to use pam_group to allow accessing imap(dovecot) only for users 
in certain group (users/groups stored in AD and checked out via 
LDAP/Kerberos), but pam_group is checking applicant's group membership. 
I'm sure, that in many cases is more useful to check group membership of 
target (authenticating) user, but not applicant. May be it's a good to 
add such functionality to pam_group (i.e. ability to chose 
target/applicat membership check) or create separate module?

-- 
С уважением, Савчук Тарас
ООО "Элантек" : Аутсорсинг ИТ, WEB-разработка
http://www.elantech.ru
+7 (495) 589 68 81
+7 (926) 779 07 05



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?460C2C9D.5050508>