Anoop C S 6f31a9
#
Anoop C S 6f31a9
# pam_winbind configuration file
Anoop C S 6f31a9
#
Anoop C S 6f31a9
# /etc/security/pam_winbind.conf
Anoop C S 6f31a9
#
Anoop C S 6f31a9
Anoop C S 6f31a9
[global]
Anoop C S 6f31a9
Anoop C S 6f31a9
# turn on debugging
Anoop C S 6f31a9
;debug = no
Anoop C S 6f31a9
Anoop C S 6f31a9
# turn on extended PAM state debugging
Anoop C S 6f31a9
;debug_state = no
Anoop C S 6f31a9
Anoop C S 6f31a9
# request a cached login if possible
Anoop C S 6f31a9
# (needs "winbind offline logon = yes" in smb.conf)
Anoop C S 6f31a9
;cached_login = no
Anoop C S 6f31a9
Anoop C S 6f31a9
# authenticate using kerberos
Anoop C S 6f31a9
;krb5_auth = no
Anoop C S 6f31a9
Anoop C S 6f31a9
# when using kerberos, request a "FILE" krb5 credential cache type
Anoop C S 6f31a9
# (leave empty to just do krb5 authentication but not have a ticket
Anoop C S 6f31a9
# afterwards)
Anoop C S 6f31a9
;krb5_ccache_type =
Anoop C S 6f31a9
Anoop C S 6f31a9
# make successful authentication dependend on membership of one SID
Anoop C S 6f31a9
# (can also take a name)
Anoop C S 6f31a9
;require_membership_of =
Anoop C S 6f31a9
Anoop C S 6f31a9
# password expiry warning period in days
Anoop C S 6f31a9
;warn_pwd_expire = 14
Anoop C S 6f31a9
Anoop C S 6f31a9
# omit pam conversations
Anoop C S 6f31a9
;silent = no
Anoop C S 6f31a9
Anoop C S 6f31a9
# create homedirectory on the fly
Anoop C S 6f31a9
;mkhomedir = no