Re: [Tigervnc-devel] PAM only works for local stored passwords

2011-02-26 Thread Sebastiaan Breedveld
Hi, On 02/25/2011 11:16 PM, Martin Koegler wrote: On Fri, Feb 25, 2011 at 09:52:48AM +0100, Sebastiaan Breedveld wrote: Unfortunately, the radius configuration file contains a sectret string to authenticate against the Radius server, so it should not be world readable. I was actually under

Re: [Tigervnc-devel] PAM only works for local stored passwords

2011-02-25 Thread DRC
On 2/25/11 2:13 AM, Martin Koegler wrote: The problem is, that some pam modules react differently, if they are invoked by root or a normal user. The debian pam_unix eg. let normal users only verify their own password and fails on any other user name. Other modules like pam_krb5, (also

Re: [Tigervnc-devel] PAM only works for local stored passwords

2011-02-25 Thread Sebastiaan Breedveld
Hi, On 02/25/2011 09:13 AM, Martin Koegler wrote: tigervnc currently only uses the auth section - account, session and password are ignored. Xvnc simply passes username password to pam and waits for the result. I have tested it for example with the pam_krb5 module successfully. The

[Tigervnc-devel] PAM only works for local stored passwords

2011-02-24 Thread Sebastiaan Breedveld
Dear list, I am testing the 1.1 pre-beta (2/21/11) 64 bit Linux binary on an Ubuntu Natty machine. According to previous posts, I start the VNC server as: ./Xvnc :4 -SecurityTypes=VeNCrypt,Plain -PlainUsers=sebastiaan pam_service=vnc which works fine when connecting with: ./vncviewer :4