Adam Monsen wrote:
AFAIK, ssh does not have the ability to report a reason for why you can't log in. This is probably a security feature so you don't leak info the the hackers.... I know this is a somewhat borderline, difficult-to-exploit case, but it seems like buggy behavior on the part of pam_tally. I would expect either branch of the condition to cause PAM/ssh/whatever just spit out "account disabled" and drop the connection.
John.
-- John Newbigin Computer Systems Officer Faculty of Information and Communication Technologies Swinburne University of Technology Melbourne, Australia http://www.it.swin.edu.au/staff/jnewbigin
_______________________________________________ Pam-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/pam-list