don't clean up gssapi credentials by default (#1055016)
This commit is contained in:
parent
f9f83a00b5
commit
f3b39bb6cb
@ -15,7 +15,7 @@ diff -up openssh-6.1p1/sshd.c.log-usepam-no openssh-6.1p1/sshd.c
|
|||||||
diff -up openssh-6.1p1/sshd_config.log-usepam-no openssh-6.1p1/sshd_config
|
diff -up openssh-6.1p1/sshd_config.log-usepam-no openssh-6.1p1/sshd_config
|
||||||
--- openssh-6.1p1/sshd_config.log-usepam-no 2012-09-14 20:54:58.514255748 +0200
|
--- openssh-6.1p1/sshd_config.log-usepam-no 2012-09-14 20:54:58.514255748 +0200
|
||||||
+++ openssh-6.1p1/sshd_config 2012-09-14 20:54:58.551255954 +0200
|
+++ openssh-6.1p1/sshd_config 2012-09-14 20:54:58.551255954 +0200
|
||||||
@@ -95,6 +95,8 @@ GSSAPICleanupCredentials yes
|
@@ -95,6 +95,8 @@ GSSAPICleanupCredentials no
|
||||||
# If you just want the PAM account and session checks to run without
|
# If you just want the PAM account and session checks to run without
|
||||||
# PAM authentication, then enable this but set PasswordAuthentication
|
# PAM authentication, then enable this but set PasswordAuthentication
|
||||||
# and ChallengeResponseAuthentication to 'no'.
|
# and ChallengeResponseAuthentication to 'no'.
|
||||||
|
@ -2892,7 +2892,7 @@ diff -up openssh-6.3p1/sshd_config.gsskex openssh-6.3p1/sshd_config
|
|||||||
@@ -92,6 +92,8 @@ ChallengeResponseAuthentication no
|
@@ -92,6 +92,8 @@ ChallengeResponseAuthentication no
|
||||||
GSSAPIAuthentication yes
|
GSSAPIAuthentication yes
|
||||||
#GSSAPICleanupCredentials yes
|
#GSSAPICleanupCredentials yes
|
||||||
GSSAPICleanupCredentials yes
|
GSSAPICleanupCredentials no
|
||||||
+#GSSAPIStrictAcceptorCheck yes
|
+#GSSAPIStrictAcceptorCheck yes
|
||||||
+#GSSAPIKeyExchange no
|
+#GSSAPIKeyExchange no
|
||||||
|
|
||||||
|
@ -96,7 +96,7 @@ diff -up openssh-6.3p1/sshd_config.redhat openssh-6.3p1/sshd_config
|
|||||||
#GSSAPIAuthentication no
|
#GSSAPIAuthentication no
|
||||||
+GSSAPIAuthentication yes
|
+GSSAPIAuthentication yes
|
||||||
#GSSAPICleanupCredentials yes
|
#GSSAPICleanupCredentials yes
|
||||||
+GSSAPICleanupCredentials yes
|
+GSSAPICleanupCredentials no
|
||||||
|
|
||||||
# Set this to 'yes' to enable PAM authentication, account processing,
|
# Set this to 'yes' to enable PAM authentication, account processing,
|
||||||
# and session processing. If this is enabled, PAM authentication will
|
# and session processing. If this is enabled, PAM authentication will
|
||||||
|
Loading…
Reference in New Issue
Block a user