summaryrefslogtreecommitdiffstats
path: root/remote/modules/pam
diff options
context:
space:
mode:
authorJonathan Bauer2013-06-21 17:40:55 +0200
committerJonathan Bauer2013-06-21 17:40:55 +0200
commit3a5fb48a71738fb010f9f50395652e132164253c (patch)
treed65122d1ca178c3ea0071121d9385e78589d113c /remote/modules/pam
parent[systemd] howto debug systemd-logind and units in general (diff)
downloadtm-scripts-3a5fb48a71738fb010f9f50395652e132164253c.tar.gz
tm-scripts-3a5fb48a71738fb010f9f50395652e132164253c.tar.xz
tm-scripts-3a5fb48a71738fb010f9f50395652e132164253c.zip
[pam] reverted to old pam config
Diffstat (limited to 'remote/modules/pam')
-rw-r--r--remote/modules/pam/data/etc/pam.d/common-account1
-rw-r--r--remote/modules/pam/data/etc/pam.d/common-auth3
-rw-r--r--remote/modules/pam/data/etc/pam.d/common-session6
3 files changed, 3 insertions, 7 deletions
diff --git a/remote/modules/pam/data/etc/pam.d/common-account b/remote/modules/pam/data/etc/pam.d/common-account
index 26055551..3a5d5a14 100644
--- a/remote/modules/pam/data/etc/pam.d/common-account
+++ b/remote/modules/pam/data/etc/pam.d/common-account
@@ -23,5 +23,4 @@ account requisite pam_deny.so
# since the modules above will each just jump around
account required pam_permit.so
# and here are more per-package modules (the "Additional" block)
-account required pam_krb5.so
# end of pam-auth-update config
diff --git a/remote/modules/pam/data/etc/pam.d/common-auth b/remote/modules/pam/data/etc/pam.d/common-auth
index 088ed13f..1fa577e7 100644
--- a/remote/modules/pam/data/etc/pam.d/common-auth
+++ b/remote/modules/pam/data/etc/pam.d/common-auth
@@ -14,8 +14,7 @@
# pam-auth-update(8) for details.
# here are the per-package modules (the "Primary" block)
-auth [success=3 default=ignore] pam_krb5.so minimum_uid=1000
-auth [success=2 default=ignore] pam_unix.so try_first_pass
+auth [success=2 default=ignore] pam_unix.so
auth [success=1 default=ignore] pam_ldap.so use_first_pass nullok_secure
# here's the fallback if no module succeeds
auth requisite pam_deny.so
diff --git a/remote/modules/pam/data/etc/pam.d/common-session b/remote/modules/pam/data/etc/pam.d/common-session
index e3180dd4..c5813892 100644
--- a/remote/modules/pam/data/etc/pam.d/common-session
+++ b/remote/modules/pam/data/etc/pam.d/common-session
@@ -26,10 +26,8 @@ session required pam_permit.so
# See "man pam_umask".
session optional pam_umask.so
# and here are more per-package modules (the "Additional" block)
-session [success=3] pam_unix.so
-session [success=2] pam_krb5.so minimum_uid=1000
-session [success=1] pam_ldap.so
+session [success=1] pam_unix.so
+session [success=ok] pam_ldap.so
session optional pam_mkhomedir.so skel=/etc/skel umask=0022
-session optional pam_script.so
session required pam_systemd.so kill-session-processes=1
# end of pam-auth-update config