Gentoo Archives: gentoo-user

From: Michael Higgins <linux@×××××××.org>
To: gentoo-user@l.g.o
Subject: [gentoo-user] [OT?] /etc/shadow perms group shadow?
Date: Sat, 15 Nov 2008 00:57:44
Message-Id: 20081114165749.4a3455a7@lappy.evolone.org
1 I have a question which may or may not be Gentoo-specific, but here goes:
2
3 An application runs as a web server. In this application I have hooks to PAM. The results I was getting from attempting to authorize against PAM were fruitless, until I looked at making a way for the user running this to read /etc/shadow.
4
5 At any rate, I wound up making a group "shadow" and making /etc/shadow owned by group shadow and group-readable, adding my user to this group. Now it works great.
6
7 Isn't this something Gentoo should have a mechanism for handling already, or am I totally off the mark here? Does anyone know if this ability to read /etc/shadow to authenticate on a system is somehow deprecated in favor of something else, or just overlooked in Gentoo land... or what? '-)
8
9 Cheers,
10
11 --
12 |\ /| | | ~ ~
13 | \/ | |---| `|` ?
14 | |ichael | |iggins \^ /
15 michael.higgins[at]evolone[dot]org

Replies

Subject Author
Re: [gentoo-user] [OT?] /etc/shadow perms group shadow? Michele Schiavo <gentoo@××××××××××××××.it>
Re: [gentoo-user] [OT?] /etc/shadow perms group shadow? Stroller <stroller@××××××××××××××××××.uk>