Re: pam_access: hostname vs. terminal

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Monday 11 September 2006 02:42, Pablo Graziano wrote:
> Can't you just specify which tty's root is allowed to login from
> in the /etc/securetty file?

I can but isn't using /etc/security/access.conf the right way? I
thought /etc/securetty was deprecated.

Besides,
> Isn't it a security hole that the module cannot tell the difference 
> between a terminal and a host name?

Cannot an attacker create a DNS record for non-existing tty2 hostname
and login from it?

-- 
Nothing but perfection
pv

_______________________________________________
Pam-list mailing list
Pam-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/pam-list

[Index of Archives]     [Fedora Users]     [Kernel]     [Red Hat Install]     [Linux for the blind]     [Gimp]

  Powered by Linux