On Tue, 30 Sep 2014 17:46:08 -0400
Matthew Miller <mattdm(a)fedoraproject.org> wrote:
On Fri, Sep 26, 2014 at 04:26:48PM -0600, Kevin Fenzi wrote:
> * Some other clever solution.
Use pam_exec, check cla membership in the auth phase (after
authentication).
Sadly that won't work. The only people who have accounts are those in
cla_done + 1 group. So, the people without that don't even have an
account, so they can't authenticate. ;(
kevin