@tknarr @AdrianVovk AIUI that's the premise and it's a very valid one. It's the same sort of premise as privsep in sshd preauth, that you want to ensure one compromised process used for interacting with the not yet authenticated user can't be used to attack the credentials of another.