Re: Feature request: Allow custom directory for privilege separation in the configuration file. And change the pam module.

[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

 



On Sun, 4 Aug 2019, Ramón García wrote:

> In order to be able to have different instances of sshd running in a
> machine (for instance, one for system administrators, other for a file
> transfer service) it should be useful:
> 
> - To allow the administrator to specify the name of the pam module, so
> that one can create a customized file in /etc/pam.d
> - A customized privilege separation directory.

Why do you need this? It just needs to be an empty directory that the
sshd privsep process has no write access to. It's completely fine to
share them between instances.

-d
_______________________________________________
openssh-unix-dev mailing list
openssh-unix-dev@xxxxxxxxxxx
https://lists.mindrot.org/mailman/listinfo/openssh-unix-dev




[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]

  Powered by Linux