Subject: Re: PAM enabled on head
To: None <current-users@NetBSD.org>
From: Christos Zoulas <christos@zoulas.com>
List: current-users
Date: 03/08/2005 07:37:35
On Mar 8,  7:28am, netbsd@lists.veego.de (Bernd Ernesti) wrote:
-- Subject: Re: PAM enabled on head

| > We have changed PAM to fail closed. I.e. a missing PAM configuration will
| > default to fail authentication as opposed to allow it. We are still
| > thinking of adding even more strict checks in the authentication path, so
| > that incorrect configurations will not default to allow someone access.
| 
| So this means that you can no longer login if you don't have an /etc/pam.d
| or an empty one?

Yes.

christos