Use pam_unix instead pam_tcb

This commit is contained in:
Alexander Kazancev 2013-11-13 20:54:03 +04:00
parent 319c69b445
commit f86144d298

View file

@ -1,17 +1,18 @@
#%PAM-1.0
auth required pam_env.so
auth sufficient pam_tcb.so shadow nullok prefix=$2a$ count=8
auth sufficient pam_unix.so try_first_pass nullok
auth required pam_deny.so
account required pam_tcb.so shadow
account required pam_unix.so
#password requisite pam_pwquality.so try_first_pass local_users_only retry=3 authtok_type=
password required pam_cracklib.so try_first_pass retry=3
password sufficient pam_tcb.so use_authtok shadow write_to=shadow nullok prefix=$2a$ count=8
password sufficient pam_unix.so try_first_pass use_authtok nullok sha512 shadow
password required pam_deny.so
session optional pam_keyinit.so revoke
session required pam_limits.so
-session optional pam_systemd.so
session [success=1 default=ignore] pam_succeed_if.so service in crond quiet use_uid
session required pam_tcb.so
-session optional pam_systemd.so
session required pam_unix.so