summaryrefslogtreecommitdiff
path: root/src/login/elogind-user.m4
diff options
context:
space:
mode:
authorLennart Poettering <lennart@poettering.net>2016-12-07 20:14:43 +0100
committerSven Eden <yamakuzure@gmx.net>2017-07-17 17:58:35 +0200
commit8622c1b84e198fb2d0626e622dfeaaa446e38f3a (patch)
treee8196c3155c09f2bc5a46154ad8594db122e0ea8 /src/login/elogind-user.m4
parente2daa07ca52e0dddb1a9f40b1c8fc9bab4e619b2 (diff)
pam: include pam_keyinit.so in our PAM fragments
We want that elogind --user gets its own keyring as usual, even if the barebones PAM snippet we ship upstream is used. If we don't do this we get the basic keyring elogind --system sets up for us.
Diffstat (limited to 'src/login/elogind-user.m4')
-rw-r--r--src/login/elogind-user.m48
1 files changed, 4 insertions, 4 deletions
diff --git a/src/login/elogind-user.m4 b/src/login/elogind-user.m4
index 2cb247488..8eb8b3bff 100644
--- a/src/login/elogind-user.m4
+++ b/src/login/elogind-user.m4
@@ -3,10 +3,10 @@
# Used by systemd --user instances.
account required pam_unix.so
-
m4_ifdef(`HAVE_SELINUX',
-session required pam_selinux.so close
-session required pam_selinux.so nottys open
+session required pam_selinux.so close
+session required pam_selinux.so nottys open
)m4_dnl
-session required pam_loginuid.so
+session required pam_loginuid.so
+session optional pam_keyinit.so force revoke
session optional pam_elogind.so