https://bugzilla.novell.com/show_bug.cgi?id=409541
User kukuk@novell.com added comment
https://bugzilla.novell.com/show_bug.cgi?id=409541#c3
--- Comment #3 from Thorsten Kukuk
If you have pam_mount first, then you are basically forced to use "try_first_pass" or "use_first_pass" on unix2.so inside the common-auth. Otherwise, you will have to enter your password twice.
This sounds to me, as if you hvaer neverreally tested it? Because this is not the case (else there is a very new bug introduced only shortly). pam_unix2 will not ask a second time for a password if there was already one provided.
So long as common-auth does not include a "sufficient", having pam_mount after the include is fine. Also, isn't the part of the manual you referenced above the part that talks about what to do when another module uses "sufficient" ?
It does not matter that the example described there uses "sufficient". -- Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.