|
|
|
|
|
by quotemstr
12 hours ago
|
|
Implementation language is incidental. Rust is... fine, I guess? But I wouldn't mandate modules use it. What's important is to move PAM out of process and sandbox the process host (using landlock, namespaces like bwrap, whatever) so we can run sensitive code with least-privilege on both ends. |
|
Really it should probably be part of SystemD, but I know that would anger the anti-SystemD zealots.