Red Hat Bugzilla – Bug 3900
/lib/security/pam_securetty.so flubs PTS entries under ssh?
Last modified: 2008-05-01 11:37:51 EDT
Attempts to use
auth required lib/security/pam_securetty.so debug
in /etc/pam.d/ssh (with ssh version 1.2.26)
yield "PAM-securetty: cannot determine user's tty".
Does this mean pam_securetty needs /dev/pts fixes?
No, it means that you should not be using securetty with ssh.
ptys are insecure except when encrypted, say with ssh, and
pam_securetty is doing precisely the right thing. Just take it
out of the stack for ssh, unless you do not want root to be able
to log in via ssh. :-)