modules/pam_xauth/README
authorTomas Mraz <>2005-10-20 17:01:06 +0000
committerTomas Mraz <>2005-10-20 17:01:06 +0000
commitd9b712775c5f1962d3490b43465537c3e28a8c49 (patch)
treec9cf9e640727cd38b13f30b5b612d6da9357952a /modules/pam_xauth/README
parent593ea15559fedf71fdb6e6fdc23a8f2532f7d571 (diff)
Relevant BUGIDs: Red Hat bz 171164
Purpose of commit: new feature Commit summary: --------------- 2005-10-20 Tomas Mraz <> * Added check for xauth binary and --with-xauth option. * Added configurable PAM_PATH_XAUTH. * modules/pam_xauth/README, modules/pam_xauth/pam_xauth.8: Document where xauth is looked for. * modules/pam_xauth/pam_xauth.c (pam_sm_open_session): Implement searching xauth binary on multiple places. (run_coprocess): Don't use execvp as it can be a security risk.
@@ -23,7 +23,8 @@ pam_xauth:
debug write debugging messages to syslog
xauthpath= the path to the xauth program, by default
- /usr/X11R6/bin/xauth
+ /usr/X11R6/bin/xauth, /usr/bin/xauth and
+ /usr/bin/X11/xauth
systemuser= highest user id assigned to system users, defaults
to 499 (pam_xauth will refuse to forward creds to
target users with id equal to or below this number,