Accounting with pam_radius_auth

2007-02-20 Thread Christophe Boyanique
Hello, I found in the archive that pam_radius questions can be asked here so here is mine: I am using pam_radius_auth to authenticate and do some accounting against a freeradius+ldaps server (which works perfectly). Everything (authorization, authentication and accounting) work perfectly

Re: Accounting with pam_radius_auth

2007-02-20 Thread Alan DeKok
Christophe Boyanique wrote: In fact the main problem is if I su to an unprivileged user, no accounting packet is sent and output displays: su: pam_radius_auth: Could not open configuration file /etc/raddb/server: Permission denid Yes. That file has to be readable by the user. This is a

Re: Accounting with pam_radius_auth

2007-02-20 Thread Christophe Boyanique
Alan DeKok a écrit : Yes. That file has to be readable by the user. This is a limitation of PAM, I think, where the pam_radius_auth module is run as the user. This is what I thought but I wanted to have a confirmation about that to be sure. It's a problem. A solution (a bad one) is