On Tue, 30 Sep 2014 17:46:08 -0400 Matthew Miller mattdm@fedoraproject.org wrote:
On Fri, Sep 26, 2014 at 04:26:48PM -0600, Kevin Fenzi wrote:
- Some other clever solution.
Use pam_exec, check cla membership in the auth phase (after authentication).
Sadly that won't work. The only people who have accounts are those in cla_done + 1 group. So, the people without that don't even have an account, so they can't authenticate. ;(
kevin