1
0
mirror of https://github.com/Yubico/yubico-pam.git synced 2025-01-20 19:52:16 +01:00

6 Commits

Author SHA1 Message Date
Thomas Patzke
0d61b263ca Security: Storage of challenges in path with restricted permissions
The previous instructions create a global word-writeable path for challenge files. This is a security issue because all users and unprivileged processes can create challenge files for arbitrary users. This enables an attacker to bypass the second factor for authentication.
2017-02-23 09:01:27 +01:00
Klas Lindfors
a4a5078a77 typo. 2016-02-26 09:35:16 +01:00
Klas Lindfors
f7b529fa94 document how to use ykpamcfg with path instead of moving file 2016-02-26 09:31:17 +01:00
Finn Glöe
9ad8c71069 Changed /etc/yubico to /var/yubico 2016-02-25 20:41:29 +01:00
Henrik Stråth
bba17d9d68 Update Authentication_Using_Challenge-Response.adoc 2014-10-31 16:37:47 +01:00
Henrik Stråth
50ede46756 Update and rename Local_Authentication_Using_Challenge-Response.adoc to Authentication_Using_Challenge-Response.adoc 2014-10-29 17:28:33 +01:00