1e2c8459eSDag-Erling Smørgrav.\" Copyright (c) 2001 Mark R V Murray 2e2c8459eSDag-Erling Smørgrav.\" All rights reserved. 3f03a4b81SDag-Erling Smørgrav.\" Copyright (c) 2001 Networks Associates Technology, Inc. 4e2c8459eSDag-Erling Smørgrav.\" All rights reserved. 5e2c8459eSDag-Erling Smørgrav.\" 6e2c8459eSDag-Erling Smørgrav.\" Portions of this software were developed for the FreeBSD Project by 7e2c8459eSDag-Erling Smørgrav.\" ThinkSec AS and NAI Labs, the Security Research Division of Network 8e2c8459eSDag-Erling Smørgrav.\" Associates, Inc. under DARPA/SPAWAR contract N66001-01-C-8035 9e2c8459eSDag-Erling Smørgrav.\" ("CBOSS"), as part of the DARPA CHATS research program. 10e2c8459eSDag-Erling Smørgrav.\" 11e2c8459eSDag-Erling Smørgrav.\" Redistribution and use in source and binary forms, with or without 12e2c8459eSDag-Erling Smørgrav.\" modification, are permitted provided that the following conditions 13e2c8459eSDag-Erling Smørgrav.\" are met: 14e2c8459eSDag-Erling Smørgrav.\" 1. Redistributions of source code must retain the above copyright 15e2c8459eSDag-Erling Smørgrav.\" notice, this list of conditions and the following disclaimer. 16e2c8459eSDag-Erling Smørgrav.\" 2. Redistributions in binary form must reproduce the above copyright 17e2c8459eSDag-Erling Smørgrav.\" notice, this list of conditions and the following disclaimer in the 18e2c8459eSDag-Erling Smørgrav.\" documentation and/or other materials provided with the distribution. 19e2c8459eSDag-Erling Smørgrav.\" 3. The name of the author may not be used to endorse or promote 20e2c8459eSDag-Erling Smørgrav.\" products derived from this software without specific prior written 21e2c8459eSDag-Erling Smørgrav.\" permission. 22e2c8459eSDag-Erling Smørgrav.\" 23e2c8459eSDag-Erling Smørgrav.\" THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND 24e2c8459eSDag-Erling Smørgrav.\" ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25e2c8459eSDag-Erling Smørgrav.\" IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26e2c8459eSDag-Erling Smørgrav.\" ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE 27e2c8459eSDag-Erling Smørgrav.\" FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28e2c8459eSDag-Erling Smørgrav.\" DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29e2c8459eSDag-Erling Smørgrav.\" OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30e2c8459eSDag-Erling Smørgrav.\" HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31e2c8459eSDag-Erling Smørgrav.\" LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32e2c8459eSDag-Erling Smørgrav.\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33e2c8459eSDag-Erling Smørgrav.\" SUCH DAMAGE. 34e2c8459eSDag-Erling Smørgrav.\" 357f432ff8SRuslan Ermilov.Dd December 5, 2001 36e2c8459eSDag-Erling Smørgrav.Dt PAM_SELF 8 37e2c8459eSDag-Erling Smørgrav.Os 38e2c8459eSDag-Erling Smørgrav.Sh NAME 39e2c8459eSDag-Erling Smørgrav.Nm pam_self 40e2c8459eSDag-Erling Smørgrav.Nd Self PAM module 41e2c8459eSDag-Erling Smørgrav.Sh SYNOPSIS 42e2c8459eSDag-Erling Smørgrav.Op Ar service-name 43e2c8459eSDag-Erling Smørgrav.Ar module-type 44e2c8459eSDag-Erling Smørgrav.Ar control-flag 45e2c8459eSDag-Erling Smørgrav.Pa pam_self 46e2c8459eSDag-Erling Smørgrav.Op Ar options 47e2c8459eSDag-Erling Smørgrav.Sh DESCRIPTION 48e2c8459eSDag-Erling SmørgravThe Self authentication service module for PAM, 49e2c8459eSDag-Erling Smørgrav.Nm 50e2c8459eSDag-Erling Smørgravprovides functionality for only one PAM category: 51e2c8459eSDag-Erling Smørgravauthentication. 52e2c8459eSDag-Erling SmørgravIn terms of the 53e2c8459eSDag-Erling Smørgrav.Ar module-type 54e2c8459eSDag-Erling Smørgravparameter, this is the 55e2c8459eSDag-Erling Smørgrav.Dq Li auth 56e2c8459eSDag-Erling Smørgravfeature. 57e2c8459eSDag-Erling Smørgrav.Ss Self Authentication Module 58e2c8459eSDag-Erling SmørgravThe Self authentication component 59e2c8459eSDag-Erling Smørgrav.Pq Fn pam_sm_authenticate , 60b6b756b5SDag-Erling Smørgravreturns success if and only if the target user's user ID is identical 61b6b756b5SDag-Erling Smørgravwith the current real user ID. 62862b46f6SRuslan ErmilovIf the current real user ID is zero, authentication will fail, 63f433d6afSDag-Erling Smørgravunless the 64fd994fa9SDag-Erling Smørgrav.Cm allow_root 65f433d6afSDag-Erling Smørgravoption was specified. 66e2c8459eSDag-Erling Smørgrav.Pp 67e2c8459eSDag-Erling SmørgravThe following options may be passed to the authentication module: 68fd994fa9SDag-Erling Smørgrav.Bl -tag -width ".Cm allow_root" 69e2c8459eSDag-Erling Smørgrav.It Cm debug 70e2c8459eSDag-Erling Smørgrav.Xr syslog 3 71e2c8459eSDag-Erling Smørgravdebugging information at 72e2c8459eSDag-Erling Smørgrav.Dv LOG_DEBUG 73e2c8459eSDag-Erling Smørgravlevel. 74e2c8459eSDag-Erling Smørgrav.It Cm no_warn 75e2c8459eSDag-Erling Smørgravsuppress warning messages to the user. 76e2c8459eSDag-Erling SmørgravThese messages include reasons why the user's authentication attempt 77e2c8459eSDag-Erling Smørgravwas declined. 78fd994fa9SDag-Erling Smørgrav.It Cm allow_root 79f433d6afSDag-Erling Smørgravdo not automatically fail if the current real user ID is 0. 80e2c8459eSDag-Erling Smørgrav.El 81e2c8459eSDag-Erling Smørgrav.Sh SEE ALSO 82e2c8459eSDag-Erling Smørgrav.Xr getuid 2 , 83*6e1fc011SGraham Percival.Xr pam 3 , 84*6e1fc011SGraham Percival.Xr pam.conf 5 85774a1007SDag-Erling Smørgrav.Sh AUTHORS 86774a1007SDag-Erling SmørgravThe 87774a1007SDag-Erling Smørgrav.Nm 88a68af001SRuslan Ermilovmodule and this manual page were developed for the 89a68af001SRuslan Ermilov.Fx 90a68af001SRuslan ErmilovProject by 91774a1007SDag-Erling SmørgravThinkSec AS and NAI Labs, the Security Research Division of Network 921a0a9345SRuslan ErmilovAssociates, Inc.\& under DARPA/SPAWAR contract N66001-01-C-8035 93774a1007SDag-Erling Smørgrav.Pq Dq CBOSS , 94774a1007SDag-Erling Smørgravas part of the DARPA CHATS research program. 95