[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-developers] authentication on a 550



Hi,

I'm looking at updating our FileMan package to work with a 550 and am
wondering about authentication and which way people think would be the best
way to go:

1. Uncomment:

# LoadModule pam_external_auth_module modules/mod_auth_pam_external.so

from httpd.conf and use Basic Authentication provided via Auth_PamFallThrough
just like the old RaQ's. I'm a little worried about this given the security
holes in /usr/lib/authenticate. Have these been patched successfully on a RaQ
550?

2. Look into how the PHP authenticates the user and emulate that. Any tips on
this would be greatly appreciated. =)

Cheers,

Alex

--
Alex Krohn
http://www.gossamer-threads.com/cobalt/