X-Git-Url: http://git.pld-linux.org/?a=blobdiff_plain;f=opensshd.pamd;h=5295659cbd4474ff5038ff2bd10e9867a5d9a808;hb=b32891d636a07ad8cd71dd4bf0824125d975e83e;hp=d33b2b2426b7b731845c73902b0998c97063cbfb;hpb=4778f00f53f90ae60e226414139b2af40190df69;p=packages%2Fopenssh.git diff --git a/opensshd.pamd b/opensshd.pamd index d33b2b2..5295659 100644 --- a/opensshd.pamd +++ b/opensshd.pamd @@ -1,17 +1,11 @@ #%PAM-1.0 -auth required pam_listfile.so item=user sense=deny file=/etc/security/blacklist onerr=succeed auth required pam_listfile.so item=user sense=deny file=/etc/security/blacklist.sshd onerr=succeed -auth required pam_unix.so -auth required pam_tally.so deny=0 file=/var/log/faillog onerr=succeed -auth required pam_shells.so -auth required pam_nologin.so -account required pam_tally.so file=/var/log/faillog onerr=succeed +auth include system-auth +account required pam_shells.so +account required pam_nologin.so account required pam_access.so -account required pam_unix.so -password required pam_cracklib.so difok=2 minlen=8 dcredit=2 ocredit=2 retry=3 -password required pam_unix.so md5 shadow use_authtok -password required pam_exec.so failok seteuid /usr/bin/make -C /var/db -session required pam_unix.so -session required pam_env.so -session required pam_limits.so change_uid -session optional pam_mail.so standard +account include system-auth +password include system-auth +session optional pam_keyinit.so force revoke +session include system-auth +session optional pam_mail.so