pam_setcred() failures should not be treated as fatal; at least there should be an option so pam_setcred() failures are not treated as fatal(). But users should be warned loudly when pam_setcred(PAM_ESTABLISH_CRED) fails and sshd proceeds. Cheers, Nico
why should pam_setcred() failures not be treated as fatal?
I don't see how failure to pam_setcred() ought be fatal. It can be crippling to the actual user experience, but, fatal? At least make it an option. Nico
what error return are you seeing? what are the pam_setcred() flags? why does it occur? why should it not be fatal?
9 months, no followup == no bug
Mass change of RESOLVED bugs to CLOSED