Re: LDAP breaks kcheckpass when not setuid root (#298148)
Le lundi 07 mai 2007 à 09:57 +1000, Russell Coker a écrit :
> On Saturday 05 May 2007 16:13, Peter Samuelson <peter@p12n.org> wrote:
> > [Roberto C. Sánchez]
> >
> > > You mean that the passwords go in the clear?
> >
> > Yes, unless you are securing the entire LDAP session, using SSL.
>
> Does the pam_ldap module allow you to store the SSL key for the server or
> authenticate the server with a certificate?
tls_checkpeer yes
tls_cacertfile /path/to/certificate
--
.''`.
: :' : We are debian.org. Lower your prices, surrender your code.
`. `' We will add your hardware and software distinctiveness to
`- our own. Resistance is futile.
Reply to: