IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Using PAM an the SSH Protocol



On 11 Apr, Darren Moffat wrote:
> I want to gather people who are interesting in helping solve this
> problem possible out comes are that there are defiencies in the core
> SSH protocol, Keyboard Interactive isn't enough to solve all PAM
> issues, PAM doesn't fit well with protocols like SSH (if it is the
> later then my goal would be to come up with some best practices on how
> it can be used and what limitations there are), or may be it is an
> implmenation issue - but it is important because at the moment there
> are interop problems that have potential security vulnerabilities in
> the view of system admins.

I am definitely interested in discussing this. I did look into this
issue while I was working with keyboard-interactive and I can try to
recollect my thoughts on the issue from that time.

	/MaF





Home | Main Index | Thread Index | Old Index