[fprint] 5 enrolls --> does 6 and breaks with error -22

Jonas Jelten jelten at in.tum.de
Sun Jun 17 06:52:38 PDT 2012


You have to use fprintd and for pam pam_fprintd.so.

This works for me (X220t) but does have some 'features' you might not
want to have.

e.g. you cannot stop the fprintd authentication with ^C and fallback to
password, you have to wait for the (unconfigurable) timeout (very
annoying over ssh).

also, you can store your fingerprint with the fprintd-enroll command,
but this does not need a password. This means: ANYONE can just store HIS
fingerprint under your account by opening a terminal with
fprintd-enroll, and then execute sudo or whatever pam-auth program.

-> we should require the user's password to update the users fingerprint.

next, you can only enroll the index finger on pam-password-prompt, no
config option here as well.

at last, i cant find a manpage about /etc/fprintd.conf, what are
possible config options?


and no, i don't want to use the fprint-gui.


Cheers,

Jonas

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 900 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freedesktop.org/archives/fprint/attachments/20120617/e6e3caf6/attachment.pgp>


More information about the fprint mailing list