[sudo-users] AIX STD_AUTH and password expiry

Sangamesh Mallayya sangamesh.swamy at in.ibm.com
Thu May 23 10:31:50 MDT 2019


Hi All,

We have seen some limitation while using sudo on AIX.

If the authentication method is STD_AUTH and user password has expired, 
sudo allows users to complete the execution without prompting for password 
change.
In case of PAM_AUTH, sudo does prompt for the password change if one is 
expired.

Is this a known limitation in AIX sudo and it hasn't been enhanced to 
prompt for password change if authentication type is STD_AUTH ?

Thanks,
Sangamesh



More information about the sudo-users mailing list