pam_uid - PAM module for uid-based authentication
=======

pam_uid is a PAM module for uid-based authentication.


Installation
------------

To build pam_uid, you should be able to simply run these commands:

   ./configure
   make
   make install

Please note that I use gcc and GNU make to build pam_uid.  While I try
to make the code portable enough for vendor compilers, I don't regularly
test it with them, so YMMV.


Encap Package Support
---------------------

To build this software as an Encap package, you can pass the
--enable-encap option to configure.  This will be automatically
enabled if the epkg or mkencap programs are detected on the system,
but can be overridden by the --disable-encap option.

When building an Encap package, the configure script will automatically
adjust the installation prefix to use an appropriate Encap package
directory.  It does this using a heuristic algorithm which examines the
values of the ${ENCAP_SOURCE} and ${ENCAP_TARGET} environment variables
and the argument to configure's --prefix option.

If mkencap was detected on the system, it will be automatically run during
"make install".  By default, epkg will also be run, but this can be
inhibited with the --disable-epkg-install configure option.

For information on the Encap package management system, see the WSG
Encap Archive:

   http://www.encap.org/


Testing
-------

To test the module, add the following line to /etc/pam.conf:

   authtest auth required /usr/local/lib/security/pam_uid.so.1 -eq <uid>
   authtest auth required /usr/lib/security/pam_unix.so.1

Substitute your uid for "<uid>".  Now run "authtest" program as root.  It
will prompt you for your login and password.  If it doesn't successfully
authenticate you, something's wrong, so check your syslog for details.
Otherwise, you're all set to start using it for system services like "su".


More Information
----------------

For more information on the pam_uid module, see the home site:

   http://www-dev.cso.uiuc.edu/pam_uid/

Source code for the latest version of pam_uid will be available there,
as well as Encap binary distributions for many common platforms.


Supported Platforms
-------------------

I develop and test pam_uid on the following platforms:

   HP-UX 11.00
   RedHat Linux 6.2
   Solaris 8

If you successfully build pam_uid on another platform, please email me a
patch and/or configuration information.


Author
------

Feedback and bug reports are welcome.

Mark D. Roth <roth@uiuc.edu>
Computing and Communications Services Office
University of Illinois at Urbana-Champaign

