Add pam_self(8) so users can login(1) as themselves without authentication,
pam_login_access(8) and pam_securetty(8) to enforce various checks previously done by login(1) but now handled by PAM, and pam_lastlog(8) to record login sessions in utmp / wtmp / lastlog. Sponsored by: DARPA, NAI Labs
This commit is contained in:
parent
c60ed00a43
commit
34cab37003
@ -6,6 +6,7 @@
|
||||
|
||||
# auth
|
||||
auth required pam_nologin.so no_warn
|
||||
auth sufficient pam_self.so no_warn
|
||||
auth sufficient pam_opie.so no_warn no_fake_prompts
|
||||
auth requisite pam_opieaccess.so no_warn
|
||||
#auth sufficient pam_kerberosIV.so no_warn try_first_pass
|
||||
@ -16,12 +17,15 @@ auth required pam_unix.so no_warn try_first_pass
|
||||
# account
|
||||
#account required pam_kerberosIV.so
|
||||
#account required pam_krb5.so
|
||||
account required pam_login_access.so
|
||||
account required pam_securetty.so
|
||||
account required pam_unix.so
|
||||
|
||||
# session
|
||||
#session required pam_kerberosIV.so
|
||||
#session required pam_krb5.so
|
||||
#session required pam_ssh.so
|
||||
session required pam_lastlog.so
|
||||
session required pam_unix.so
|
||||
|
||||
# password
|
||||
|
Loading…
Reference in New Issue
Block a user