Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 5 Aug 1999 08:05:35 +1000
From:      Peter Jeremy <jeremyp@gsmx07.alcatel.com.au>
To:        assar@sics.se
Cc:        hackers@FreeBSD.ORG
Subject:   Re: NSS Project
Message-ID:  <99Aug5.074611est.40327@border.alcanet.com.au>
In-Reply-To: <5loggno44q.fsf@assaris.sics.se>

next in thread | previous in thread | raw e-mail | index | archive | help
Assar Westerlund <assar@sics.se> wrote:
>Peter Jeremy <jeremyp@gsmx07.alcatel.com.au> writes:
>> We need to be able to build an application that has no dynamically
>> loaded code for recovery purposes (/stand and /sbin) as well as for
>> security.
>
>Isn't that the same problem as with PAM?

Quite probably PAM has the same problem.  I haven't bumped into it
with PAM, so I can't be sure.  I definitely wouldn't like to get into
the situation where init can fail to load (or be unable to validate
the single-user password for a secure console) because the appropriate
encryption library is on a partition that isn't mounted yet (or has
been corrupted somehow).

The idea of being able to dynamically add new password encrytion
schemes (PAM) or database access methods (NSS) is generally good.
The problems appear when you try to marry these schemes with the
system security and initialisation/recovery tools (which need to
rely on and trust a minimal subset of the system).

Peter


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-hackers" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?99Aug5.074611est.40327>