]> Frank Brehm's Git Trees - config/bruni/etc.git/commitdiff
saving uncommitted changes in /etc prior to emerge run
authorfrank <frank@bruni.home.brehm-online.com>
Mon, 16 Jan 2012 13:29:29 +0000 (14:29 +0100)
committerFrank Brehm <root@bruni.home.brehm-online.com>
Mon, 16 Jan 2012 13:29:29 +0000 (14:29 +0100)
.etckeeper
pam.d/._cfg0000_system-auth [new file with mode: 0644]
pam.d/._cfg0000_system-services [new file with mode: 0644]

index bb5046f24cb3c0d2f13df3a3a1d957627197e764..3223c3aac8afc6c23a626f76db3ead579e7e1054 100755 (executable)
@@ -622,6 +622,8 @@ maybe chown ldap './openldap/ssl/ldap.pem'
 maybe chgrp ldap './openldap/ssl/ldap.pem'
 maybe chmod 0400 './openldap/ssl/ldap.pem'
 maybe chmod 0755 './pam.d'
+maybe chmod 0644 './pam.d/._cfg0000_system-auth'
+maybe chmod 0644 './pam.d/._cfg0000_system-services'
 maybe chmod 0644 './pam.d/chage'
 maybe chmod 0644 './pam.d/chfn'
 maybe chmod 0644 './pam.d/chgpasswd'
diff --git a/pam.d/._cfg0000_system-auth b/pam.d/._cfg0000_system-auth
new file mode 100644 (file)
index 0000000..1a285d6
--- /dev/null
@@ -0,0 +1,22 @@
+auth           required        pam_env.so 
+auth           sufficient      pam_ssh.so
+auth           [success=1 default=ignore]      pam_krb5.so  ignore_root try_first_pass
+auth           required        pam_unix.so try_first_pass likeauth nullok 
+auth           optional        pam_permit.so
+account                [success=1 default=ignore]      pam_krb5.so  ignore_root try_first_pass
+account                required        pam_unix.so 
+account                optional        pam_permit.so
+password       required        pam_cracklib.so difok=2 minlen=8 dcredit=2 ocredit=2 retry=3 
+password       [success=1 default=ignore]      pam_krb5.so  ignore_root try_first_pass
+password       required        pam_unix.so try_first_pass use_authtok nullok sha512 shadow 
+password       optional        pam_permit.so
+session                optional        pam_ssh.so
+session                required        pam_limits.so 
+session                required        pam_env.so 
+session                optional        pam_mktemp.so
+session                [success=1 default=ignore]      pam_krb5.so  ignore_root try_first_pass
+session                required        pam_unix.so 
+session                optional        pam_permit.so
diff --git a/pam.d/._cfg0000_system-services b/pam.d/._cfg0000_system-services
new file mode 100644 (file)
index 0000000..982364c
--- /dev/null
@@ -0,0 +1,9 @@
+auth           sufficient      pam_permit.so
+account                include         system-auth
+session         optional        pam_loginuid.so
+session                required        pam_limits.so 
+session                required        pam_env.so 
+session                optional        pam_mktemp.so
+session                [success=1 default=ignore]      pam_krb5.so  ignore_root try_first_pass
+session                required        pam_unix.so 
+session                optional        pam_permit.so