|
Tomáš Mráz |
ca47f6 |
#%PAM-1.0
|
|
Tomáš Mráz |
6a5e29 |
auth required pam_sepermit.so
|
|
Tomáš Mráz |
ca47f6 |
auth include system-auth
|
|
Tomáš Mráz |
ca47f6 |
account required pam_nologin.so
|
|
Tomáš Mráz |
ca47f6 |
account include system-auth
|
|
Tomáš Mráz |
ca47f6 |
password include system-auth
|
|
Tomáš Mráz |
1961bc |
# pam_selinux.so close should be the first session rule
|
|
Tomáš Mráz |
1961bc |
session required pam_selinux.so close
|
|
Tomáš Mráz |
ca47f6 |
session required pam_loginuid.so
|
|
Tomáš Mráz |
1961bc |
# pam_selinux.so open should only be followed by sessions to be executed in the user context
|
|
Tomáš Mráz |
1961bc |
session required pam_selinux.so open env_params
|
|
Tomáš Mráz |
1961bc |
session optional pam_keyinit.so force revoke
|
|
Tomáš Mráz |
6a5e29 |
session include system-auth
|