Scroll to navigation

x2gobroker-authservice(8) X2Go Session Broker x2gobroker-authservice(8)

NAME

x2gobroker-authservice - PAM authentication service for X2Go Session Broker

SYNOPSIS


x2gobroker-authservice
[ options ]

DESCRIPTION

x2gobroker-authservice is a PAM authentication service for X2Go Session Broker. Whereas the X2Go Session Broker runs as a non-privileged user (standalone daemon mode) or as the also non-privileged httpd server's system user (WSGI mode), an authentication against PAM requires root privileges in most cases (esp. for pam_unix.so).

Thus, the PAM authentication has been moved into a separate service. The communication between X2Go Session Broker and PAM Authentication Service is handled through a unix domain socket file (<RUNDIR>/x2gobroker/x2gobroker-authservice.socket).

This command is normally started through the host's init system.

COMMON OPTIONS

x2gobroker-authservice accepts the following common options:

Display a help with all available command line options and exit.
Fork this application to background and detach from the running terminal.
Custom PID file location when daemonizing (default: <RUNDIR>/x2gobroker/x2gobroker-authservice.pid).
Directory where stdout/stderr will be redirected after having daemonized (default: /var/log/x2gobroker/).
File name of the unix domain socket file used for communication between broker and authentication service.
User ownership of the <AUTHSOCKET> file.
Group ownership of the <AUTHSOCKET> file.
Set these file permissions for the <AUTHSOCKET> file. Use numerical permissions (e.g. 0640).

FILES

<RUNDIR>/x2gobroker/x2gobroker-authservice.socket

AUTHOR

This manual has been written for the X2Go project by Mike Gabriel <mike.gabriel@das-netzwerkteam.de>.

Apr 2020 Version 0.0.4.x