From 9fc2ed638e658518f56cb225b8d28b3b657d0c32 Mon Sep 17 00:00:00 2001 From: des Date: Wed, 5 Dec 2001 21:06:21 +0000 Subject: pam.d-style configuration, auto-generated from pam.conf. Sponsored by: DARPA, NAI Labs --- etc/pam.d/csshd | 8 ++++++++ etc/pam.d/ftp | 24 ++++++++++++++++++++++++ etc/pam.d/ftpd | 24 ++++++++++++++++++++++++ etc/pam.d/gdm | 26 ++++++++++++++++++++++++++ etc/pam.d/imap | 11 +++++++++++ etc/pam.d/kde | 13 +++++++++++++ etc/pam.d/login | 30 ++++++++++++++++++++++++++++++ etc/pam.d/other | 19 +++++++++++++++++++ etc/pam.d/pop3 | 11 +++++++++++ etc/pam.d/rsh | 15 +++++++++++++++ etc/pam.d/sshd | 18 ++++++++++++++++++ etc/pam.d/su | 41 +++++++++++++++++++++++++++++++++++++++++ etc/pam.d/telnetd | 12 ++++++++++++ etc/pam.d/xdm | 26 ++++++++++++++++++++++++++ etc/pam.d/xserver | 8 ++++++++ 15 files changed, 286 insertions(+) create mode 100644 etc/pam.d/csshd create mode 100644 etc/pam.d/ftp create mode 100644 etc/pam.d/ftpd create mode 100644 etc/pam.d/gdm create mode 100644 etc/pam.d/imap create mode 100644 etc/pam.d/kde create mode 100644 etc/pam.d/login create mode 100644 etc/pam.d/other create mode 100644 etc/pam.d/pop3 create mode 100644 etc/pam.d/rsh create mode 100644 etc/pam.d/sshd create mode 100644 etc/pam.d/su create mode 100644 etc/pam.d/telnetd create mode 100644 etc/pam.d/xdm create mode 100644 etc/pam.d/xserver (limited to 'etc/pam.d') diff --git a/etc/pam.d/csshd b/etc/pam.d/csshd new file mode 100644 index 0000000..9fd61f4 --- /dev/null +++ b/etc/pam.d/csshd @@ -0,0 +1,8 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "csshd" service +# + +# auth +csshd auth required pam_opie.so no_warn diff --git a/etc/pam.d/ftp b/etc/pam.d/ftp new file mode 100644 index 0000000..b1762e9 --- /dev/null +++ b/etc/pam.d/ftp @@ -0,0 +1,24 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "ftp" service +# + +# auth +ftp auth required pam_nologin.so no_warn +#ftp auth sufficient pam_kerberosIV.so no_warn +#ftp auth sufficient pam_krb5.so no_warn +#ftp auth required pam_opie.so no_warn +#ftp auth required pam_ssh.so no_warn try_first_pass +ftp auth required pam_unix.so no_warn try_first_pass + +# account +#ftp account required pam_kerberosIV.so +#ftp account required pam_krb5.so +ftp account required pam_unix.so + +# session +#ftp session required pam_kerberosIV.so +#ftp session required pam_krb5.so +#ftp session required pam_ssh.so +ftp session required pam_unix.so diff --git a/etc/pam.d/ftpd b/etc/pam.d/ftpd new file mode 100644 index 0000000..a3a677c --- /dev/null +++ b/etc/pam.d/ftpd @@ -0,0 +1,24 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "ftpd" service +# + +# auth +ftpd auth required pam_nologin.so no_warn +#ftpd auth sufficient pam_kerberosIV.so no_warn +#ftpd auth sufficient pam_krb5.so no_warn +#ftpd auth required pam_opie.so no_warn +#ftpd auth required pam_ssh.so no_warn try_first_pass +ftpd auth required pam_unix.so no_warn try_first_pass + +# account +#ftpd account required pam_kerberosIV.so +#ftpd account required pam_krb5.so +ftpd account required pam_unix.so + +# session +#ftpd session required pam_kerberosIV.so +#ftpd session required pam_krb5.so +#ftpd session required pam_ssh.so +ftpd session required pam_unix.so diff --git a/etc/pam.d/gdm b/etc/pam.d/gdm new file mode 100644 index 0000000..e0fd313 --- /dev/null +++ b/etc/pam.d/gdm @@ -0,0 +1,26 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "gdm" service +# + +# auth +gdm auth required pam_nologin.so no_warn +#gdm auth sufficient pam_kerberosIV.so no_warn try_first_pass +#gdm auth sufficient pam_krb5.so no_warn try_first_pass +#gdm auth sufficient pam_ssh.so no_warn try_first_pass +gdm auth required pam_unix.so no_warn try_first_pass + +# account +#gdm account required pam_kerberosIV.so +#gdm account required pam_krb5.so +gdm account required pam_unix.so + +# session +#gdm session required pam_kerberosIV.so +#gdm session required pam_krb5.so +#gdm session required pam_ssh.so +gdm session required pam_unix.so + +# password +gdm password required pam_deny.so diff --git a/etc/pam.d/imap b/etc/pam.d/imap new file mode 100644 index 0000000..6911370 --- /dev/null +++ b/etc/pam.d/imap @@ -0,0 +1,11 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "imap" service +# + +# auth +#imap auth required pam_nologin.so no_warn +#imap auth required pam_opie.so no_warn +#imap auth required pam_ssh.so no_warn try_first_pass +#imap auth required pam_unix.so no_warn try_first_pass diff --git a/etc/pam.d/kde b/etc/pam.d/kde new file mode 100644 index 0000000..81fc590 --- /dev/null +++ b/etc/pam.d/kde @@ -0,0 +1,13 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "kde" service +# + +# auth +kde auth required pam_nologin.so no_warn +#kde auth sufficient pam_opie.so no_warn +#kde auth sufficient pam_kerberosIV.so no_warn try_first_pass +#kde auth sufficient pam_krb5.so no_warn try_first_pass +#kde auth required pam_ssh.so no_warn try_first_pass +kde auth required pam_unix.so no_warn try_first_pass diff --git a/etc/pam.d/login b/etc/pam.d/login new file mode 100644 index 0000000..019a15a --- /dev/null +++ b/etc/pam.d/login @@ -0,0 +1,30 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "login" service +# + +# auth +login auth required pam_nologin.so no_warn +#login auth sufficient pam_opie.so no_warn +#login auth sufficient pam_kerberosIV.so no_warn try_first_pass +#login auth sufficient pam_krb5.so no_warn try_first_pass +#login auth required pam_ssh.so no_warn try_first_pass +login auth required pam_unix.so no_warn try_first_pass + +# account +#login account required pam_kerberosIV.so +#login account required pam_krb5.so +login account required pam_unix.so + +# session +#login session required pam_kerberosIV.so +#login session required pam_krb5.so +#login session required pam_ssh.so +login session required pam_unix.so + +# password +#login password sufficient pam_opie.so no_warn +#login password sufficient pam_kerberosIV.so no_warn try_first_pass +#login password sufficient pam_krb5.so no_warn try_first_pass +login password required pam_unix.so no_warn try_first_pass diff --git a/etc/pam.d/other b/etc/pam.d/other new file mode 100644 index 0000000..058a0b7 --- /dev/null +++ b/etc/pam.d/other @@ -0,0 +1,19 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "other" service +# + +# auth +other auth required pam_nologin.so no_warn +#other auth required pam_opie.so no_warn +other auth required pam_unix.so no_warn try_first_pass + +# account +other account required pam_unix.so + +# session +other session required pam_unix.so + +# password +other password required pam_deny.so diff --git a/etc/pam.d/pop3 b/etc/pam.d/pop3 new file mode 100644 index 0000000..32fafca --- /dev/null +++ b/etc/pam.d/pop3 @@ -0,0 +1,11 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "pop3" service +# + +# auth +#pop3 auth required pam_nologin.so no_warn +#pop3 auth required pam_opie.so no_warn +#pop3 auth required pam_ssh.so no_warn try_first_pass +#pop3 auth required pam_unix.so no_warn try_first_pass diff --git a/etc/pam.d/rsh b/etc/pam.d/rsh new file mode 100644 index 0000000..b392415 --- /dev/null +++ b/etc/pam.d/rsh @@ -0,0 +1,15 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "rsh" service +# + +# auth +rsh auth required pam_nologin.so no_warn +rsh auth required pam_deny.so no_warn + +# account +rsh account required pam_unix.so + +# session +rsh session required pam_permit.so diff --git a/etc/pam.d/sshd b/etc/pam.d/sshd new file mode 100644 index 0000000..f28ff87 --- /dev/null +++ b/etc/pam.d/sshd @@ -0,0 +1,18 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "sshd" service +# + +# auth +sshd auth required pam_nologin.so no_warn +sshd auth required pam_unix.so no_warn try_first_pass + +# account +sshd account required pam_unix.so + +# session +sshd session required pam_permit.so + +# password +sshd password required pam_permit.so diff --git a/etc/pam.d/su b/etc/pam.d/su new file mode 100644 index 0000000..085216c --- /dev/null +++ b/etc/pam.d/su @@ -0,0 +1,41 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "su" service +# + +# auth +su auth sufficient pam_rootok.so no_warn +su auth requisite pam_wheel.so no_warn auth_as_self noroot_ok +#su auth sufficient pam_kerberosIV.so no_warn +#su auth sufficient pam_krb5.so no_warn try_first_pass auth_as_self +#su auth required pam_opie.so no_warn +#su auth required pam_ssh.so no_warn try_first_pass +su auth required pam_unix.so no_warn try_first_pass nullok +#su auth sufficient pam_rootok.so no_warn +##su auth sufficient pam_kerberosIV.so no_warn +##su auth sufficient pam_krb5.so no_warn +#su auth required pam_opie.so no_warn auth_as_self +#su auth required pam_unix.so no_warn try_first_pass auth_as_self + +# account +#su account required pam_kerberosIV.so +#su account required pam_krb5.so +su account required pam_unix.so +##su account required pam_kerberosIV.so +##su account required pam_krb5.so +#su account required pam_unix.so + +# session +#su session required pam_kerberosIV.so +#su session required pam_krb5.so +#su session required pam_ssh.so +su session required pam_unix.so +##su session required pam_kerberosIV.so +##su session required pam_krb5.so +##su session required pam_ssh.so +#su session required pam_unix.so + +# password +su password required pam_permit.so +#su password required pam_permit.so diff --git a/etc/pam.d/telnetd b/etc/pam.d/telnetd new file mode 100644 index 0000000..423de8e --- /dev/null +++ b/etc/pam.d/telnetd @@ -0,0 +1,12 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "telnetd" service +# + +# auth +telnetd auth required pam_nologin.so no_warn +telnetd auth required pam_unix.so no_warn try_first_pass + +# account +telnetd account required pam_unix.so diff --git a/etc/pam.d/xdm b/etc/pam.d/xdm new file mode 100644 index 0000000..8528e03 --- /dev/null +++ b/etc/pam.d/xdm @@ -0,0 +1,26 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "xdm" service +# + +# auth +xdm auth required pam_nologin.so no_warn +#xdm auth sufficient pam_kerberosIV.so no_warn try_first_pass +#xdm auth sufficient pam_krb5.so no_warn try_first_pass +#xdm auth sufficient pam_ssh.so no_warn try_first_pass +xdm auth required pam_unix.so no_warn try_first_pass + +# account +#xdm account required pam_kerberosIV.so +#xdm account required pam_krb5.so +xdm account required pam_unix.so + +# session +#xdm session required pam_kerberosIV.so +#xdm session required pam_krb5.so +#xdm session required pam_ssh.so +xdm session required pam_unix.so + +# password +xdm password required pam_deny.so diff --git a/etc/pam.d/xserver b/etc/pam.d/xserver new file mode 100644 index 0000000..58fa760 --- /dev/null +++ b/etc/pam.d/xserver @@ -0,0 +1,8 @@ +# +# $FreeBSD$ +# +# PAM configuration for the "xserver" service +# + +# auth +xserver auth required pam_permit.so no_warn -- cgit v1.1