[Freeipa-users] Creating Home directories still presents as -sh-4.1$ after changing oddjob mask

Jakub Hrozek jhrozek at redhat.com
Thu Jan 22 09:22:47 UTC 2015


On Thu, Jan 22, 2015 at 10:12:09AM +0100, Jakub Hrozek wrote:
> > [root at node5 ~]# su - sina
> 
> One note -- calling su - sina bypasses the PAM stack mostly

Sorry, this was really inaccurate. I meant to say "calling su - sina
from root". The reason is the pam_rootok.so module in the PAM stack
returns success and doesn't query the other modules.

If you called "su - sina" from another non-privileged user, you'd be
asked for a password.




More information about the Freeipa-users mailing list