Subject: Re: PAM
To: None <>
From: Dustin Sallings <>
List: tech-userlevel
Date: 03/17/1999 10:21:32
On Wed, 17 Mar 1999 wrote:

# Hmm.  How would you specify authentication methods?  It would seem only
# reasonable to use 'login.conf' for them, at which point, the provided
# model does authentication. 

	The same way FreeBSD did it, in PAM. 

# I'm uncomfortable with doing PAM unless someone can show me how a
# non-suid program can do authentication that requires suid using it.

	It's absolutely trivial.  In PAM, you're just calling a function
out of a shared object.  That shared object can execute a suid program,
exchange some information with it, and validate the user based on the

