On Thu, Jun 10, 2004 at 11:19:42AM -0400, Paul Raines wrote: > So the pam_succeed_if line in system-auth is really only needed if > you use LDAP (which I don't)? Yeah, or some other network auth protocol -- the problem before was that when remote account info wasn't available (network down, for example), it wasn't letting *local* accounts in -- even root. -- Matthew Miller mattdm@xxxxxxxxxx <http://www.mattdm.org/> Boston University Linux ------> <http://linux.bu.edu/>