[357] in athena10
Re: update_server and remote access
daemon@ATHENA.MIT.EDU (Jonathan Reed)
Fri Aug 1 13:02:58 2008
Cc: Quentin Smith <quentin@mit.edu>, Timothy G Abbott <tabbott@mit.edu>,
athena10@mit.edu
Message-Id: <F7B2DA84-B0D8-4AF0-8AA2-D6A825A2716F@mit.edu>
From: Jonathan Reed <jdreed@MIT.EDU>
To: Xavid <xavid@mit.edu>
In-Reply-To: <04AE250D-2315-4D34-BAC3-C729860568F2@mit.edu>
Content-Type: text/plain; charset=US-ASCII; format=flowed; delsp=yes
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (Apple Message framework v919.2)
Date: Fri, 1 Aug 2008 13:02:09 -0400
On Aug 1, 2008, at 12:44 PM, Xavid wrote:
> This behavior is pretty harmless, but we could possibly changing it
> by modifying the PAM configuration. It's the specified behavior of
> our current PAM configuration, so potentially we'd want to figure
> out what ideal behavior is and then see if we can change our
> configuration to have that behavior.
Like I said, I don't really care, I was just surprised as I have never
seen pam_krb5 prompt separately for a password. Indeed, I cannot
reproduce the behavior on Redhat, even with a similar pam configuration.
I'm also slighly baffled that the initial Password: prompt accepts a
null password in the first place.
-Jon