aboutsummaryrefslogtreecommitdiff
path: root/pam_fscrypt/config
diff options
context:
space:
mode:
authorEric Biggers <ebiggers@google.com>2022-12-02 22:13:01 -0800
committerEric Biggers <ebiggers3@gmail.com>2022-12-04 13:05:00 -0800
commit5373b314473b08f13372ab55b551738307a85fbd (patch)
treeb79ffbd54285e36ad1411b0f84416c2c884fc4af /pam_fscrypt/config
parent295c503a77f53b87305bba310e37cbdd9b516936 (diff)
pam_fscrypt: filter out irrelevant policies earlier
If a session is opened for a user twice and the second doesn't have the AUTHTOK data, pam_fscrypt prints an error message that says it failed to unlock a protector because AUTHTOK data is missing. This is misleading because the protector and its associated policies were already unlocked by the first session. To avoid this, move the check for whether the policy is provisioned or not into policiesUsingProtector(). Also do the same for CloseSession.
Diffstat (limited to 'pam_fscrypt/config')
0 files changed, 0 insertions, 0 deletions