Toehold and login need to be separated in functionality, so one doesn't depend on the other running. We need to shut down X without a kill -9. Kerberos information should be enough for creating password file info, home directory. .fullname, .shell (provide etcsh?) getpw*: back to normal? (Assume all logins are via our login and thus have an entry put into the password file, using the usual add routines stolen from mkpasswd and/or passwd). login blockage when in use (stop inetd functions with a logged-in version of inetd?)