Openwall Project   /home  Owl  JtR  Pro  crypt  pam_passwdqc  tcb  phpass  scanlogd  popa3d  msulogin  /  Linux  BIND  /  advisories  presentations  /  services  donations  /  wordlists  passwords  /  community  lists  wiki  CVSweb  mirrors  signatures
bringing security into open environments
 
This website is powered by Openwall GNU/*/Linux security-enhanced OS
[<prev] [next>] [<thread-prev] [thread-next>] [month] [year] [list]
Date: Mon, 3 Jul 2006 22:20:13 -0600
From: Vincent Danen <vdanen@...sec.ca>
To: owl-users@...ts.openwall.com
Subject: Re: tcb and friends with shadow-utils 4.0.12

* Vincent Danen <vdanen@...sec.ca> [2006-07-03 22:02:11 -0600]:

[...]
> Right now I'm having an issue with userdel complaining that it can't
> lock the shadow password file, so it's not deleting anyone.  Other than
> that, I think everything else is ok.

Nevermind.  This was a problem in my spec where I wasn't passing
-DSHADOWTCB properly.  It all seems to work properly now.  At least
enough that I feel comfortable committing it for others to test.

So Annvix is, well, within an hour, officially using tcb out-of-the-box.
Well, make that two hours or so... recompiling glibc just to update
nsswitch.conf is a PITA but needs to be done.

Thanks again, Solar.  I very much appreciate your time and assistance
with this.

-- 
{FEE30AD4 : 7F6C A60C 06C2 4811 FA1C  A2BC 2EBC 5E32 FEE3 0AD4}
mysql> SELECT * FROM users WHERE clue > 0;
Empty set (0.00sec)
:: Annvix - Secure Linux Server: http://annvix.org/ ::

[ CONTENT OF TYPE application/pgp-signature SKIPPED ]

Hosted by DataForce ISP - Powered by Openwall GNU/*/Linux