Skip to content
Commit a05a340e authored by obadz's avatar obadz
Browse files

PAM: reorganize the way pam_ecryptfs and pam_mount get their password

Run pam_unix an additional time rather than switching it from sufficient
to required. This fixes a potential security issue for
ecryptfs/pam_mount users as with pam_deny gone, if cfg.unixAuth = False
then it is possible to login without a password.
parent 7ae05edc
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment