From a4f2ccf65f8e970c8b60dd45f64cee9defd3305a Mon Sep 17 00:00:00 2001 From: frank Date: Mon, 16 Jan 2012 14:29:29 +0100 Subject: [PATCH] saving uncommitted changes in /etc prior to emerge run --- .etckeeper | 2 ++ pam.d/._cfg0000_system-auth | 22 ++++++++++++++++++++++ pam.d/._cfg0000_system-services | 9 +++++++++ 3 files changed, 33 insertions(+) create mode 100644 pam.d/._cfg0000_system-auth create mode 100644 pam.d/._cfg0000_system-services diff --git a/.etckeeper b/.etckeeper index bb5046f2..3223c3aa 100755 --- a/.etckeeper +++ b/.etckeeper @@ -622,6 +622,8 @@ maybe chown ldap './openldap/ssl/ldap.pem' maybe chgrp ldap './openldap/ssl/ldap.pem' maybe chmod 0400 './openldap/ssl/ldap.pem' maybe chmod 0755 './pam.d' +maybe chmod 0644 './pam.d/._cfg0000_system-auth' +maybe chmod 0644 './pam.d/._cfg0000_system-services' maybe chmod 0644 './pam.d/chage' maybe chmod 0644 './pam.d/chfn' maybe chmod 0644 './pam.d/chgpasswd' diff --git a/pam.d/._cfg0000_system-auth b/pam.d/._cfg0000_system-auth new file mode 100644 index 00000000..1a285d68 --- /dev/null +++ b/pam.d/._cfg0000_system-auth @@ -0,0 +1,22 @@ +auth required pam_env.so +auth sufficient pam_ssh.so +auth [success=1 default=ignore] pam_krb5.so ignore_root try_first_pass +auth required pam_unix.so try_first_pass likeauth nullok +auth optional pam_permit.so + +account [success=1 default=ignore] pam_krb5.so ignore_root try_first_pass +account required pam_unix.so +account optional pam_permit.so + +password required pam_cracklib.so difok=2 minlen=8 dcredit=2 ocredit=2 retry=3 +password [success=1 default=ignore] pam_krb5.so ignore_root try_first_pass +password required pam_unix.so try_first_pass use_authtok nullok sha512 shadow +password optional pam_permit.so + +session optional pam_ssh.so +session required pam_limits.so +session required pam_env.so +session optional pam_mktemp.so +session [success=1 default=ignore] pam_krb5.so ignore_root try_first_pass +session required pam_unix.so +session optional pam_permit.so diff --git a/pam.d/._cfg0000_system-services b/pam.d/._cfg0000_system-services new file mode 100644 index 00000000..982364cf --- /dev/null +++ b/pam.d/._cfg0000_system-services @@ -0,0 +1,9 @@ +auth sufficient pam_permit.so +account include system-auth +session optional pam_loginuid.so +session required pam_limits.so +session required pam_env.so +session optional pam_mktemp.so +session [success=1 default=ignore] pam_krb5.so ignore_root try_first_pass +session required pam_unix.so +session optional pam_permit.so -- 2.39.5