[Freeipa-devel] [PATCH] handle pam acct_mgmt, setcred and open/close_session before user bind in ldap backend

Simo Sorce ssorce at redhat.com
Fri Apr 24 09:50:21 UTC 2009


On Fri, 2009-04-24 at 11:21 +0200, Sumit Bose wrote:
> 
> this patch moves the response to pam_acct_mgmt, pam_setcred,
> pam_open_session and pam_close_session before the bind request with
> user
> dn. For the request mentioned above we do not send any credentials to
> the backend and will fail because the user bind fails. I'm wondering
> why
> I first see this when testing with rawhide1.fedoraproject.org, because
> it seemed to work with my local openLDAP server.
> 
> This patch is needed to make the PAM_LDAP_Native test work.

ack

Simo.




More information about the Freeipa-devel mailing list