Add pam_self(8) so users can login(1) as themselves without authentication,

pam_login_access(8) and pam_securetty(8) to enforce various checks
previously done by login(1) but now handled by PAM, and pam_lastlog(8) to
record login sessions in utmp / wtmp / lastlog.

Sponsored by:	DARPA, NAI Labs
This commit is contained in:
Dag-Erling Smørgrav 2002-01-30 19:13:23 +00:00
parent c60ed00a43
commit 34cab37003
Notes: svn2git 2020-12-20 02:59:44 +00:00
svn path=/head/; revision=89995

View File

@ -6,6 +6,7 @@
# auth
auth required pam_nologin.so no_warn
auth sufficient pam_self.so no_warn
auth sufficient pam_opie.so no_warn no_fake_prompts
auth requisite pam_opieaccess.so no_warn
#auth sufficient pam_kerberosIV.so no_warn try_first_pass
@ -16,12 +17,15 @@ auth required pam_unix.so no_warn try_first_pass
# account
#account required pam_kerberosIV.so
#account required pam_krb5.so
account required pam_login_access.so
account required pam_securetty.so
account required pam_unix.so
# session
#session required pam_kerberosIV.so
#session required pam_krb5.so
#session required pam_ssh.so
session required pam_lastlog.so
session required pam_unix.so
# password