From 72031ec2439eb4ae8962809ca3ffdbd92875789a Mon Sep 17 00:00:00 2001 From: =?utf8?q?Jan=20R=C4=99korajski?= Date: Tue, 27 Mar 2007 15:43:42 +0000 Subject: [PATCH] - uniformized configs to use system-auth where possible - sanitized - uniform blacklist for pop3, imap and smtp services Changed files: xdm.pamd -> 1.9 --- xdm.pamd | 21 +++++++-------------- 1 file changed, 7 insertions(+), 14 deletions(-) diff --git a/xdm.pamd b/xdm.pamd index a918f0c..35969c1 100644 --- a/xdm.pamd +++ b/xdm.pamd @@ -1,18 +1,11 @@ #%PAM-1.0 -auth required pam_listfile.so item=user sense=deny file=/etc/security/blacklist onerr=succeed auth required pam_listfile.so item=user sense=deny file=/etc/security/blacklist.xdm onerr=succeed -auth required pam_unix.so -auth required pam_tally.so deny=0 file=/var/log/faillog onerr=succeed -auth required pam_shells.so -auth required pam_nologin.so -account required pam_tally.so file=/var/log/faillog onerr=succeed +auth include system-auth +account required pam_shells.so +account required pam_nologin.so account required pam_access.so -account required pam_time.so -account required pam_unix.so -password required pam_cracklib.so difok=2 minlen=8 dcredit=2 ocredit=2 retry=3 -password required pam_unix.so md5 shadow use_authtok -password required pam_exec.so failok seteuid /usr/bin/make -C /var/db -session required pam_unix.so -session required pam_env.so -session required pam_limits.so change_uid +account include system-auth +password include system-auth +session optional pam_keyinit.so force revoke +session include system-auth session optional pam_console.so -- 2.44.0