bmh10 / rpms / openssh

Forked from rpms/openssh 10 days ago
Clone
Petr Šabata 81d24c
diff --git a/sshd.c b/sshd.c
Petr Šabata 81d24c
--- a/sshd.c
Petr Šabata 81d24c
+++ b/sshd.c
Petr Šabata 81d24c
@@ -1701,6 +1701,10 @@ main(int ac, char **av)
Petr Šabata 81d24c
 	parse_server_config(&options, rexeced_flag ? "rexec" : config_file_name,
Petr Šabata 81d24c
 	    cfg, &includes, NULL);
Petr Šabata 81d24c
 
Petr Šabata 81d24c
+	/* 'UsePAM no' is not supported in Fedora */
Petr Šabata 81d24c
+	if (! options.use_pam)
Petr Šabata 81d24c
+		logit("WARNING: 'UsePAM no' is not supported in Fedora and may cause several problems.");
Petr Šabata 81d24c
+
Petr Šabata 81d24c
 	/* Fill in default values for those options not explicitly set. */
Petr Šabata 81d24c
 	fill_default_server_options(&options);
Petr Šabata 81d24c
 
Petr Šabata 81d24c
diff --git a/sshd_config b/sshd_config
Petr Šabata 81d24c
--- a/sshd_config
Petr Šabata 81d24c
+++ b/sshd_config
Petr Šabata 81d24c
@@ -101,6 +101,8 @@ GSSAPICleanupCredentials no
Petr Šabata 81d24c
 # If you just want the PAM account and session checks to run without
Petr Šabata 81d24c
 # PAM authentication, then enable this but set PasswordAuthentication
Petr Šabata 81d24c
 # and ChallengeResponseAuthentication to 'no'.
Petr Šabata 81d24c
+# WARNING: 'UsePAM no' is not supported in Fedora and may cause several
Petr Šabata 81d24c
+# problems.
Petr Šabata 81d24c
 #UsePAM no
Petr Šabata 81d24c
 
Petr Šabata 81d24c
 #AllowAgentForwarding yes