1 Linux-PAM NEWS -- history of user-visible changes.
5 * misc_conv no longer blocks SIGINT; applications that don't want
6 user-interruptable prompts should block SIGINT themselves
7 * Merge fixes from Debian
8 * Fix parser for pam_group and pam_time
11 * Fix a regression in audit code introduced with last release
12 * Fix compiling with --disable-nls
16 * Add translations for ar, ca, da, ru, sv and zu.
17 * Update hungarian translation.
18 * Add support for limits.d directory to pam_limits.
19 * Improve pam_namespace module tobe more useful
20 for MLS, fixed crash with bad config files.
21 * Improve pam_selinux module to be more useful
23 * Add minclass option to pam_cracklib
24 * Add new group syntax to pam_access
29 * Security fix for pam_unix.so (CVE-2007-0003).
34 * Add manual page for pam_unix.so.
35 * Add pam_faildelay module to set pam_fail_delay() value.
36 * Fix possible seg.fault in libpam/pam_set_data().
37 * Cleanup of configure options.
38 * Update hungarian translation, fix german translation.
43 * pam_loginuid: New PAM module.
44 * pam_access, pam_succeed_if: Support passwd and session services.
49 * pam_lastlog: Don't refuse login if lastlog file got lost.
50 * pam_cracklib: Fix a user triggerable crash.
51 * documentation: Regenerate with fixed docbook stylesheet.
56 * Fix bootstrapping problems.
57 * Bug fixes: pam_keyinit, pam_umask
62 * pam_namespace: Code cleanup, add init script to tar archive.
63 * pam_succeed_if: Add support for service match.
64 * Add xtests (to run after installation).
65 * Documentation: Convert sgml guides to XML, unify documentation
66 for PAM functions and modules.
71 * pam_tally: Fix support for large UIDs
72 * Fixed all problems found by Coverity
73 * Add support for Intel C Compiler
74 * Add manual page for pam_mkhomedir, pam_umask, pam_filter,
75 pam_issue, pam_ftp, pam_group, pam_lastlog, pam_listfile,
76 pam_localuser, pam_mail, pam_motd, pam_nologin, pam_permit,
77 pam_rootok, pam_securetty, pam_shells, pam_userdb, pam_warn,
78 pam_time, pam_limits, pam_debug, pam_tally
79 * The libpam memory debug code was removed
80 * pam_keyinit: New module to initialise kernel session keyring.
81 * pam_namespace: New module to configure private namespace for a session.
82 * pam_rhosts: New module which replaces pam_rhosts_auth, now IPv6 capable.
83 * pam_rhosts_auth: This module is now deprecated.
89 * Fix building of static variants of libpam, libpamc and libpam_misc
90 * pam_listfile: Add support for password and session management
91 * pam_exec: New PAM module to execute arbitary commands
92 * Fix building of a static libpam including all PAM modules
93 * New/updated translations for: nl, pt, pl, fi, km, tr, uk, fr
94 * pam_access: Add network(address) / netmask and IPv6 support
95 * Add manual pages for pam_cracklib, pam_deny and pam_access
96 * pam_pwdb: This deprecated module was removed
97 * Manual pages: Major rewrite/cleanup
102 * Fix NULL pointer checks in libpam.so
103 * pam_succeed_if, pam_group, pam_time: Support netgroup matching
104 * New translations for: nb, hu, fi, de, es, fr, it, ja, pt_BR, zh_CN, zh_TW
105 * Audit PAM calls if Linux Audit is available
106 * Compile upperLOWER and unix_chkpwd as PIE binaries
111 * Fix install of PS, PDF, TXT and HTML files
112 * pam_mail: Update README
114 * pam_modutil_getlogin: Fix parsing of PAM_TTY variable
119 * Fix parsing of full path tty name in various modules
120 * pam_xauth: Look for xauth executable in multiple places
121 * pam_unix: Disable user check in unix_chkpwd only if real uid
122 is 0 (CVE-2005-2977). Log failed password check attempt.
123 * pam_env: Support /etc/environment again, but don't treat it as
124 error if it is missing.
125 * pam_userdb: Fix memory leak.
130 * Use autoconf/automake/libtool
131 * Add gettext support
132 * Add translations for cs, de, es, fr, hu, it, ja, nb, pa, pt_BR,
134 * libpam: Remove pam_authenticate_secondary stub
135 * libpam: Add pam_prompt,pam_vprompt,pam_error,pam_verror,pam_info
136 and pam_vinfo functions for use by modules as extension
137 * libpam: Add pam_syslog function for unified syslog messages from
139 * libpam: Moved functions from pammodutil to libpam
140 * pam_umask: New module for setting umask from GECOS field, /etc/login.defs
141 or /etc/default/login
142 * pam_echo: New PAM module for message output
143 * pam_userdb: Fix regression (crash when crypt param not specified)
144 * pam_limits: Fix regression from RLIMIT_NICE support (wrong limit
145 values for other limits are applied)
146 * pam_access: Support for NULL tty - matches ALL and NONE keywords
147 * pam_lastlog: Enable log to wtmp by default. Add "nowtmp" option
148 * pam_radius: This module was removed