Subject: Re: login.conf for selecting password verification method (was Re: Kerberos is on by default?)
To: NetBSD Userlevel Technical Discussion List <tech-userlevel@netbsd.org>
From: Greg A. Woods <woods@weird.com>
List: tech-userlevel
Date: 07/09/2000 13:56:15
[ On , July 8, 2000 at 18:58:42 (+0200), Johan Danielsson wrote: ]
> Subject: Re: login.conf for selecting password verification method (was Re: Kerberos is on by default?)
>
> woods@weird.com (Greg A. Woods) writes:
> 
> > There are lots of other ways to avoid having to rebuild every
> > application.  Having an authentication API does not imply that it
> > has to be dynamically linked.  In fact it is even possible to design
> > secure APIs that do not require any form of relinking, though I
> > don't think we've gone quite that far for NetBSD yet.
> 
> Now you're talking about something different, please keep to the
> subject.

No, I don't think I am actually.  PAM is just one type of API that can
be successful in meeting its stated goals.

-- 
							Greg A. Woods

+1 416 218-0098      VE3TCP      <gwoods@acm.org>      <robohack!woods>
Planix, Inc. <woods@planix.com>; Secrets of the Weird <woods@weird.com>