summaryrefslogtreecommitdiff
path: root/debian/pam-configs
diff options
context:
space:
mode:
Diffstat (limited to 'debian/pam-configs')
-rw-r--r--debian/pam-configs/cracklib9
-rw-r--r--debian/pam-configs/unix23
2 files changed, 32 insertions, 0 deletions
diff --git a/debian/pam-configs/cracklib b/debian/pam-configs/cracklib
new file mode 100644
index 00000000..1c48274f
--- /dev/null
+++ b/debian/pam-configs/cracklib
@@ -0,0 +1,9 @@
+Name: Cracklib password strength checking
+Default: yes
+Priority: 1024
+Conflicts: unix-zany
+Password-Type: Primary
+Password:
+ requisite pam_cracklib.so retry=3 minlen=8 difok=3
+Password-Initial:
+ requisite pam_cracklib.so retry=3 minlen=8 difok=3
diff --git a/debian/pam-configs/unix b/debian/pam-configs/unix
new file mode 100644
index 00000000..4bb6bab4
--- /dev/null
+++ b/debian/pam-configs/unix
@@ -0,0 +1,23 @@
+Name: Unix authentication
+Default: yes
+Priority: 256
+Auth-Type: Primary
+Auth:
+ [success=end default=ignore] pam_unix.so nullok_secure try_first_pass
+Auth-Initial:
+ [success=end default=ignore] pam_unix.so nullok_secure
+Account-Type: Primary
+Account:
+ [success=end new_authtok_reqd=done default=ignore] pam_unix.so
+Account-Initial:
+ [success=end new_authtok_reqd=done default=ignore] pam_unix.so
+Session-Type: Additional
+Session:
+ required pam_unix.so
+Session-Initial:
+ required pam_unix.so
+Password-Type: Primary
+Password:
+ [success=end default=ignore] pam_unix.so obscure use_authtok try_first_pass md5
+Password-Initial:
+ [success=end default=ignore] pam_unix.so obscure md5