Bug#415732: fails to authenticate with second password pam auth module

Jack Bates ms419 at freezone.co.uk
Wed Mar 21 22:53:48 UTC 2007


On Wed, 2007-21-03 at 22:03 +0100, Josselin Mouette wrote:
> Le mercredi 21 mars 2007 à 08:10 -0700, Jack Bates a écrit :
> > Package: gksu
> > Version: 2.0.0-1
> > Severity: normal
> > 
> > I use two pam auth modules: pam_shishi and pam_unix. If I enter a
> > password and pam_shishi fails to authenticate, sudo prompts me for a
> > second password and tries to authenticate with pam_unix.
> 
> It looks like your PAM configuration is incorrect. You should use the
> use_first_pass option for pam_unix so that the password rejected by
> pam_shishi is re-used.

Thanks for your fast response. use_first_pass prevents users whose
Kerberos password differes from their local password from logging in
when pam_shishi fails. Our system needs to support prompting the user
for a second password, but gksu does not appear to handle this second
password prompt.

Jack
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 242 bytes
Desc: This is a digitally signed message part
Url : http://lists.alioth.debian.org/pipermail/pkg-gnome-maintainers/attachments/20070321/f20a546e/attachment-0001.pgp


More information about the pkg-gnome-maintainers mailing list