1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253 |
- #!/bin/bash
- cat > system-account << "EOF" &&
- # Begin /etc/pam.d/system-account
- account required pam_unix.so
- # End /etc/pam.d/system-account
- EOF
- cat > system-auth << "EOF" &&
- # Begin /etc/pam.d/system-auth
- auth required pam_unix.so
- # End /etc/pam.d/system-auth
- EOF
- cat > system-session << "EOF"
- # Begin /etc/pam.d/system-session
- session required pam_unix.so
- session required pam_loginuid.so
- session optional pam_elogind.so
- # End /etc/pam.d/system-session
- EOF
- cat > system-password << "EOF"
- # Begin /etc/pam.d/system-password
- # use sha512 hash for encryption, use shadow, and try to use any previously
- # defined authentication token (chosen password) set by any prior module
- password required pam_unix.so sha512 shadow try_first_pass
- # End /etc/pam.d/system-password
- EOF
- cat > other << "EOF"
- # Begin /etc/pam.d/other
- auth required pam_warn.so
- auth required pam_deny.so
- account required pam_warn.so
- account required pam_deny.so
- password required pam_warn.so
- password required pam_deny.so
- session required pam_warn.so
- session required pam_deny.so
- # End /etc/pam.d/other
- EOF
|