--===============0189390273==
Content-Type: multipart/alternative;
boundary="----=_Part_8397_23435146.1156849755739"

------=_Part_8397_23435146.1156849755739
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

Hej TJ,
thanks for your reply.
I changed my /etc/pam.d/ftpd file to look like this:

auth sufficient pam_securityserver.so
auth required pam_deny.so
account required pam_permit.so
password required pam_deny.so
session required pam_permit.so

then I started proftpd again and tried to login. the result is the same, I
guess. Is there a core dump going on and if so would it help you to have a
look at that?

$ sudo /usr/local/proftpd/sbin/proftpd -n -c
/usr/local/proftpd/etc/proftpd.conf -d 10
- parsing '/usr/local/proftpd/etc/proftpd.conf' configuration
- FS: using system open()
- FS: using system read()
- dispatching directive 'ServerName' to module mod_core
- dispatching directive 'ServerType' to module mod_core
- dispatching directive 'DefaultServer' to module mod_core
- dispatching directive 'Port' to module mod_core
- dispatching directive 'Umask' to module mod_core
- dispatching directive 'MaxInstances' to module mod_core
- dispatching directive 'User' to module mod_core
- dispatching auth request "getpwnam" to module mod_auth_file
- dispatching auth request "getpwnam" to module mod_auth_unix
- retrieved UID 0 for user 'root'
- dispatching directive 'Group' to module mod_core
- dispatching auth request "getgrnam" to module mod_auth_file
- dispatching auth request "getgrnam" to module mod_auth_unix
- retrieved GID 0 for group 'wheel'
- dispatching directive 'AllowOverwrite' to module mod_xfer
- dispatching directive 'PersistentPasswd' to module mod_auth_unix
- dispatching directive '' to module mod_core
- : using 'mod_auth_pam.c' section at line 11
- dispatching directive 'AuthPAMConfig' to module mod_auth_pam
- dispatching directive '
' to module mod_core
- FS: using system read()
- FS: using system close()
- attempting to resolve 'svti-imac-g5.local' to IPv4 address via DNS
- resolved 'svti-imac-g5.local' to IPv4 address serverip
serverip -
serverip - Config for ProFTPD Default Installation:
serverip - DefaultServer
serverip - Umask
serverip - UserID
serverip - UserName
serverip - GroupID
serverip - GroupName
serverip - AllowOverwrite
serverip - AuthPAMConfig
serverip - dispatching event 'core.postparse' to mod_delay
serverip - ROOT PRIVS at mod_delay.c:292
serverip - FS: using system open()
serverip - RELINQUISH PRIVS at mod_delay.c:294
serverip - FS: using system fstat()
serverip - mod_delay/0.5: mapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' into memory
serverip - mod_delay/0.5: unmapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' from memory
serverip - FS: using system close()
serverip - SETUP PRIVS at main.c:2897
serverip - ROOT PRIVS at main.c:1991
serverip - RELINQUISH PRIVS at main.c:1998
serverip - ROOT PRIVS at main.c:2346
serverip - opening scoreboard
'/usr/local/proftpd/var/proftpd/proftpd.scoreboard'
serverip - RELINQUISH PRIVS at main.c:2372
serverip - dispatching event 'core.startup' to mod_core
serverip - ROOT PRIVS at inet.c:244
serverip - RELINQUISH PRIVS at inet.c:261
serverip - ROOT PRIVS at inet.c:323
serverip - RELINQUISH PRIVS at inet.c:381
serverip - ProFTPD 1.3.0 (stable) (built Thu Aug 24 09:20:26 CEST 2006)
standalone mode STARTUP
serverip - ROOT PRIVS at main.c:2209
serverip - RELINQUISH PRIVS at main.c:2211
serverip - FS: using system lstat()
serverip - FS: using system lstat()
serverip - ROOT PRIVS at main.c:1176
serverip - RELINQUISH PRIVS at main.c:1180
serverip - no matching vhost found for serverip#21, using DefaultServer
'ProFTPD Default Installation'
serverip - FS: using system lstat()
serverip (clientip[clientip]) - ROOT PRIVS at main.c:1025
serverip (clientip[clientip]) - SETUP PRIVS at main.c:1030
serverip (clientip[clientip]) - FTP session requested from unknown class
serverip (clientip[clientip]) - performing module session initializations
serverip (clientip[clientip]) - mod_delay/0.5: opening DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay'
serverip (clientip[clientip]) - ROOT PRIVS at mod_delay.c:948
serverip (clientip[clientip]) - FS: using system open()
serverip (clientip[clientip]) - RELINQUISH PRIVS at mod_delay.c:950
serverip (clientip[clientip]) - ROOT PRIVS at mod_auth.c:145
serverip (clientip[clientip]) - opening scoreboard
'/usr/local/proftpd/var/proftpd/proftpd.scoreboard'
serverip (clientip[clientip]) - RELINQUISH PRIVS at mod_auth.c:147
serverip (clientip[clientip]) - performing ident lookup
serverip (clientip[clientip]) - ROOT PRIVS at inet.c:244
serverip (clientip[clientip]) - RELINQUISH PRIVS at inet.c:261
serverip (clientip[clientip]) - ident connection failed: Connection refused
serverip (clientip[clientip]) - ident lookup returned 'UNKNOWN'
serverip (clientip[clientip]) - connected - local : serverip:21
serverip (clientip[clientip]) - connected - remote : clientip:53567
serverip (clientip[clientip]) - FTP session opened.
serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to
mod_core
serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to
mod_core
serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to
mod_delay
serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to
mod_auth
serverip (clientip[clientip]) - dispatching auth request "endpwent" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "endpwent" to
module mod_auth_unix
serverip (clientip[clientip]) - dispatching auth request "endgrent" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "endgrent" to
module mod_auth_unix
serverip (clientip[clientip]) - dispatching CMD command 'USER test' to
mod_auth
serverip (clientip[clientip]) - dispatching auth request "getgroups" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "getgroups" to
module mod_auth_unix
serverip (clientip[clientip]) - retrieved group ID: 20
serverip (clientip[clientip]) - retrieved group name: staff
serverip (clientip[clientip]) - dispatching POST_CMD command 'USER test' to
mod_delay
serverip (clientip[clientip]) - mod_delay/0.5: mapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' into memory
serverip (clientip[clientip]) - mod_delay/0.5: write-locking DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay', row 1
serverip (clientip[clientip]) - mod_delay/0.5: selecting median interval
from 2 values
serverip (clientip[clientip]) - mod_delay/0.5: adding 42599 usecs to USER
row
serverip (clientip[clientip]) - mod_delay/0.5: unlocking DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay', row 1
serverip (clientip[clientip]) - mod_delay/0.5: unmapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' from memory
serverip (clientip[clientip]) - dispatching LOG_CMD command 'USER test' to
mod_log
serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)'
to mod_core
serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)'
to mod_core
serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)'
to mod_delay
serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)'
to mod_auth
serverip (clientip[clientip]) - dispatching auth request "endpwent" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "endpwent" to
module mod_auth_unix
serverip (clientip[clientip]) - dispatching auth request "endgrent" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "endgrent" to
module mod_auth_unix
serverip (clientip[clientip]) - dispatching CMD command 'PASS (hidden)' to
mod_auth
serverip (clientip[clientip]) - dispatching auth request "getgroups" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "getgroups" to
module mod_auth_unix
serverip (clientip[clientip]) - retrieved group ID: 20
serverip (clientip[clientip]) - retrieved group name: staff
serverip (clientip[clientip]) - dispatching auth request "getpwnam" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "getpwnam" to
module mod_auth_unix
serverip (clientip[clientip]) - retrieved UID 1025 for user 'test'
serverip (clientip[clientip]) - dispatching auth request "gid2name" to
module mod_auth_file
serverip (clientip[clientip]) - dispatching auth request "gid2name" to
module mod_auth_unix
serverip (clientip[clientip]) - dispatching auth request "auth" to module
mod_auth_pam
serverip (clientip[clientip]) - ROOT PRIVS at mod_auth_pam.c:264
serverip (clientip[clientip]) - ProFTPD terminating (signal 11)
serverip (clientip[clientip]) - FTP session closed.
serverip - FS: using system lstat()
serverip - scrubbing scoreboard
serverip - ROOT PRIVS at mod_core.c:131
serverip - RELINQUISH PRIVS at mod_core.c:133
serverip - ROOT PRIVS at mod_core.c:161
serverip - RELINQUISH PRIVS at mod_core.c:192
serverip - FS: using system lstat()
^Cserverip - ProFTPD terminating (signal 2)
serverip - ROOT PRIVS at main.c:1872
serverip - dispatching event 'core.exit' to core
serverip - dispatching event 'core.exit' to mod_delay
serverip - ROOT PRIVS at mod_delay.c:828
serverip - FS: using system open()
serverip - RELINQUISH PRIVS at mod_delay.c:830
serverip - mod_delay/0.5: write-locking DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay'
serverip - mod_delay/0.5: mapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' into memory
serverip - mod_delay/0.5: unmapping DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay' from memory
serverip - mod_delay/0.5: unlocking DelayTable
'/usr/local/proftpd/var/proftpd/proftpd.delay'
serverip - FS: using system write()
serverip - FS: using system close()
serverip - RELINQUISH PRIVS at main.c:1893
serverip - ProFTPD 1.3.0 standalone mode SHUTDOWN
serverip - ROOT PRIVS at main.c:1900
serverip - deleting existing scoreboard
'/usr/local/proftpd/var/proftpd/proftpd.scoreboard'
serverip - RELINQUISH PRIVS at main.c:1902
serverip - no event handlers registered for 'core.exit'

On 8/29/06, TJ Saunders wrote:
>
>
> > my /etc/pam.d/ftp file looks like this:
> >
> > # login: auth account password session
> > auth sufficient pam_securityserver.so
> > auth required pam_deny.so
> > account required pam_permit.so
> > password required pam_deny.so
> > session required pam_permit.so
> > auth required pam_unix.so try_first_pass
> > account required pam_unix.so try_first_pass
> > session required pam_permit.so

>
> What happens if you change this file to contain just the following:
>
> # login: auth account password session
> auth sufficient pam_securityserver.so
> auth required pam_deny.so
> account required pam_permit.so
> password required pam_deny.so
> session required pam_permit.so
>
> and then restart proftpd?
>
> TJ
>
>
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>
> Force is not a remedy.
>
> -John Bright
>
>
> ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
>
> -------------------------------------------------------------------------
> Using Tomcat but need to do more? Need to support web services, security?
> Get stuff done quickly with pre-integrated technology to make your job
> easier
> Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
> http://sel.as-us.falkag.net/sel?cmd=...057&dat=121642
> _______________________________________________
> ProFTPD Users List
> Unsubscribe problems?
> http://www.proftpd.org/list-unsub.html
>


------=_Part_8397_23435146.1156849755739
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

Hej TJ,
thanks for your reply.
I changed my /etc/pam.d/ftpd file to look like this:


auth          sufficient      pam_securityserver.so

auth          required        pam_deny.so

account       required        pam_permit.so
password      required        pam_deny.so

session       required        pam_permit.so

then I started proftpd again and tried to login. the result is the same, I guess. Is there a core dump going on and if so would it help you to have a look at that?


$ sudo /usr/local/proftpd/sbin/proftpd -n  -c /usr/local/proftpd/etc/proftpd.conf   -d 10

 - parsing '/usr/local/proftpd/etc/proftpd.conf' configuration

 - FS: using system open()

 - FS: using system read()
 - dispatching directive 'ServerName' to module mod_core

 - dispatching directive 'ServerType' to module mod_core

 - dispatching directive 'DefaultServer' to module mod_core

 - dispatching directive 'Port' to module mod_core

 - dispatching directive 'Umask' to module mod_core

 - dispatching directive 'MaxInstances' to module mod_core

 - dispatching directive 'User' to module mod_core

 - dispatching auth request "getpwnam" to module mod_auth_file

 - dispatching auth request "getpwnam" to module mod_auth_unix

 - retrieved UID 0 for user 'root'

 - dispatching directive 'Group' to module mod_core
 - dispatching auth request "getgrnam" to module mod_auth_file

 - dispatching auth request "getgrnam" to module mod_auth_unix

 - retrieved GID 0 for group 'wheel'
 - dispatching directive 'AllowOverwrite' to module mod_xfer

 - dispatching directive 'PersistentPasswd' to module mod_auth_unix

 - dispatching directive '<IfModule>' to module mod_core
 - <IfModule>: using 'mod_auth_pam.c' section at line 11

 - dispatching directive 'AuthPAMConfig' to module mod_auth_pam

 - dispatching directive '</IfModule>' to module mod_core
 - FS: using system read()

 - FS: using system close()

 - attempting to resolve 'svti-imac-g5.local' to IPv4 address via DNS

 - resolved 'svti-imac-g5.local' to IPv4 address serverip

serverip -

serverip - Config for ProFTPD Default Installation:

serverip - DefaultServer

serverip - Umask
serverip - UserID

serverip - UserName
serverip - GroupID

serverip - GroupName
serverip - AllowOverwrite

serverip - AuthPAMConfig
serverip - dispatching event 'core.postparse
' to mod_delay

serverip - ROOT PRIVS at mod_delay.c:292

serverip - FS: using system open()

serverip - RELINQUISH PRIVS at mod_delay.c:294

serverip - FS: using system fstat()
serverip - mod_delay/0.5: mapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' into memory

serverip - mod_delay/0.5: unmapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' from memory

serverip - FS: using system close()
serverip - SETUP PRIVS at main.c
:2897

serverip - ROOT PRIVS at main.c:1991

serverip - RELINQUISH PRIVS at main.c:1998

serverip - ROOT PRIVS at main.c:2346

serverip - opening scoreboard '/usr/local/proftpd/var/proftpd/proftpd.scoreboard'

serverip - RELINQUISH PRIVS at main.c:2372

serverip - dispatching event 'core.startup' to mod_core

serverip - ROOT PRIVS at inet.c:244
serverip - RELINQUISH PRIVS at
inet.c:261

serverip - ROOT PRIVS at inet.c:323

serverip - RELINQUISH PRIVS at inet.c:381

serverip - ProFTPD 1.3.0 (stable) (built Thu Aug 24 09:20:26 CEST 2006) standalone mode STARTUP

serverip - ROOT PRIVS at main.c:2209

serverip - RELINQUISH PRIVS at main.c:2211

serverip - FS: using system lstat()

serverip - FS: using system lstat()
serverip - ROOT PRIVS at main.c
:1176

serverip - RELINQUISH PRIVS at main.c:1180

serverip - no matching vhost found for serverip#21, using DefaultServer 'ProFTPD Default Installation'

serverip - FS: using system lstat()

serverip (clientip[clientip]) - ROOT PRIVS at main.c:1025

serverip (clientip[clientip]) - SETUP PRIVS at main.c:1030

serverip (clientip[clientip]) - FTP session requested from unknown class

serverip (clientip[clientip]) - performing module session initializations

serverip (clientip[clientip]) - mod_delay/0.5: opening DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay'

serverip (clientip[clientip]) - ROOT PRIVS at mod_delay.c:948

serverip (clientip[clientip]) - FS: using system open()

serverip (clientip[clientip]) - RELINQUISH PRIVS at mod_delay.c:950

serverip (clientip[clientip]) - ROOT PRIVS at mod_auth.c:145
serverip (clientip[clientip]) - opening scoreboard '/usr/local/proftpd/var/proftpd/proftpd.scoreboard'

serverip (clientip[clientip]) - RELINQUISH PRIVS at mod_auth.c:147

serverip (clientip[clientip]) - performing ident lookup
serverip (clientip[clientip]) - ROOT PRIVS at
inet.c:244

serverip (clientip[clientip]) - RELINQUISH PRIVS at inet.c:261

serverip (clientip[clientip]) - ident connection failed: Connection refused

serverip (clientip[clientip]) - ident lookup returned 'UNKNOWN'

serverip (clientip[clientip]) - connected - local  : serverip:21

serverip (clientip[clientip]) - connected - remote : clientip:53567

serverip (clientip[clientip]) - FTP session opened.
serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to mod_core

serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to mod_core

serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to mod_delay

serverip (clientip[clientip]) - dispatching PRE_CMD command 'USER test' to mod_auth

serverip (clientip[clientip]) - dispatching auth request "endpwent" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "endpwent" to module mod_auth_unix

serverip (clientip[clientip]) - dispatching auth request "endgrent" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "endgrent" to module mod_auth_unix

serverip (clientip[clientip]) - dispatching CMD command 'USER test' to mod_auth

serverip (clientip[clientip]) - dispatching auth request "getgroups" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "getgroups" to module mod_auth_unix

serverip (clientip[clientip]) - retrieved group ID: 20

serverip (clientip[clientip]) - retrieved group name: staff

serverip (clientip[clientip]) - dispatching POST_CMD command 'USER test' to mod_delay

serverip (clientip[clientip]) - mod_delay/0.5: mapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' into memory

serverip (clientip[clientip]) - mod_delay/0.5: write-locking DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay', row 1

serverip (clientip[clientip]) - mod_delay/0.5: selecting median interval from 2 values

serverip (clientip[clientip]) - mod_delay/0.5: adding 42599 usecs to USER row

serverip (clientip[clientip]) - mod_delay/0.5: unlocking DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay', row 1

serverip (clientip[clientip]) - mod_delay/0.5: unmapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' from memory

serverip (clientip[clientip]) - dispatching LOG_CMD command 'USER test' to mod_log

serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)' to mod_core

serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)' to mod_core

serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)' to mod_delay

serverip (clientip[clientip]) - dispatching PRE_CMD command 'PASS (hidden)' to mod_auth

serverip (clientip[clientip]) - dispatching auth request "endpwent" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "endpwent" to module mod_auth_unix

serverip (clientip[clientip]) - dispatching auth request "endgrent" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "endgrent" to module mod_auth_unix

serverip (clientip[clientip]) - dispatching CMD command 'PASS (hidden)' to mod_auth

serverip (clientip[clientip]) - dispatching auth request "getgroups" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "getgroups" to module mod_auth_unix

serverip (clientip[clientip]) - retrieved group ID: 20

serverip (clientip[clientip]) - retrieved group name: staff

serverip (clientip[clientip]) - dispatching auth request "getpwnam" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "getpwnam" to module mod_auth_unix

serverip (clientip[clientip]) - retrieved UID 1025 for user 'test'

serverip (clientip[clientip]) - dispatching auth request "gid2name" to module mod_auth_file

serverip (clientip[clientip]) - dispatching auth request "gid2name" to module mod_auth_unix

serverip (clientip[clientip]) - dispatching auth request "auth" to module mod_auth_pam

serverip (clientip[clientip]) - ROOT PRIVS at mod_auth_pam.c:264
serverip (clientip[clientip]) - ProFTPD terminating (signal 11)

serverip (clientip[clientip]) - FTP session closed.

serverip - FS: using system lstat()

serverip - scrubbing scoreboard

serverip - ROOT PRIVS at mod_core.c:131
serverip - RELINQUISH PRIVS at mod_core.c:133

serverip - ROOT PRIVS at mod_core.c:161

serverip - RELINQUISH PRIVS at mod_core.c:192

serverip - FS: using system lstat()

^Cserverip - ProFTPD terminating (signal 2)
serverip - ROOT PRIVS at
main.c:1872

serverip - dispatching event 'core.exit' to core

serverip - dispatching event 'core.exit' to mod_delay

serverip - ROOT PRIVS at mod_delay.c:828

serverip - FS: using system open()
serverip - RELINQUISH PRIVS at mod_delay.c:830

serverip - mod_delay/0.5: write-locking DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay'

serverip - mod_delay/0.5: mapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' into memory

serverip - mod_delay/0.5: unmapping DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay' from memory

serverip - mod_delay/0.5: unlocking DelayTable '/usr/local/proftpd/var/proftpd/proftpd.delay'

serverip - FS: using system write()

serverip - FS: using system close()

serverip - RELINQUISH PRIVS at main.c:1893

serverip - ProFTPD 1.3.0 standalone mode SHUTDOWN
serverip - ROOT PRIVS at
main.c:1900

serverip - deleting existing scoreboard '/usr/local/proftpd/var/proftpd/proftpd.scoreboard'

serverip - RELINQUISH PRIVS at main.c:1902
serverip - no event handlers registered for '
core.exit'


On 8/29/06, TJ Saunders <tj@castaglia.org> wrote:


> my /etc/pam.d/ftp file looks like this:
>
> # login: auth account password session
> auth       sufficient     pam_securityserver.so
> auth       required       pam_deny.so
> account    required       pam_permit.so

> password   required       pam_deny.so
> session    required       pam_permit.so
> auth       required       pam_unix.so try_first_pass
> account    required       pam_unix.so try_first_pass
> session    required       pam_permit.so


What happens if you change this file to contain just the following:

  # login: auth account password session
  auth          sufficient      pam_securityserver .so
  auth          required        pam_deny.so

  account       required        pam_permit.so
  password      required        pam_deny.so
  session       required        pam_permit.so

and then restart proftpd?

TJ

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


   Force is not a remedy.

        -John Bright

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

-------------------------------------------------------------------------

Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo

http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________

ProFTPD Users List   <roftpd-users@proftpd.org">proftpd-users@proftpd.org>
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html




------=_Part_8397_23435146.1156849755739--


--===============0189390273==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=...057&dat=121642
--===============0189390273==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
ProFTPD Users List
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html
--===============0189390273==--