On Sat, 2010-02-27 at 13:58 +0100, Arthur de Jong wrote:
> As an authorisation check perform a custom search (after normal
> authentication). If the search yields any results access is granted,
> otherwise access is denied.

Attached is a very rough and untested patch which partially implements
this. The search filter is currently hard-coded and things like
escaping, having a configfile option, proper reporting back to the PAM
module and testing remain to be done but it should show the basic idea.

