Post #3863017
2026-07-16 14:54 UTC
> This is by design and won't be changed. If you want to authenticate other users by a non-root PAM process you have to change your /etc/shadow permissions to allow reading it by the non-root PAM process. For example have the non-root PAM process run with some special group and make the /etc/shadow readable by this group. The unix-chkpwd is setuid to only allow reauthentication of the user that is calling it such as in case of the screensaver screen lock.
...
it's by design
okay I GUESS
RE: https://social.vlhl.dev/objects/dbf03a43-db43-45b6-834f-8d26899dd603
Replies (1)
-
@fiore@brain.worm.pink 2026-07-16 16:28
@navi@social.vlhl.dev yea this sucks .