summaryrefslogtreecommitdiff
path: root/debian/local
Commit message (Collapse)AuthorAge
* pam-auth-update: set the umask, so we don't accidentally markSteve Langasek2019-01-08
|\ | | | | | | | | /etc/pam.d/common-* unreadable. Thanks to Martin Krafft for catching. Closes: #518042.
| * pam-auth-update: set the umask, so we don't accidentally mark ↵Steve Langasek2019-01-03
| | | | | | | | /etc/pam.d/common-* unreadable.
* | pam-auth-update: swap out known md5sums from intrepid pre-release Steve Langasek2019-01-08
|/ | | | versions with the md5sums from the released intrepid version
* also update the md5sums in response to the template version bumps...Steve Langasek2019-01-03
|
* bump the version number for what should really be the last time: no more pamSteve Langasek2019-01-03
| | | | uploads are anticipated before the lenny release (again).
* factor out the duplicate code used for returning the lines for a given moduleSteve Langasek2019-01-03
|
* trim leading whitespace from multiline fields when parsing PAM profilesSteve Langasek2019-01-03
|
* ignore removed profiles when detecting an empty setGreg Price2019-01-03
|
* If /var/lib/pam/seen is absent, handle it the same as if the file wereGreg Price2019-01-03
| | | | | present but empty.
* skip over the 'deny' in our no-primary-modules caseSteve Langasek2019-01-03
|
* get rid of the double pam_permit in common-password, the stack will handleSteve Langasek2019-01-03
| | | | this correctly now
* get rid of the double pam_permit in common-session, the stack will handle thisSteve Langasek2019-01-03
| | | | right now
* tune the whitespaceSteve Langasek2019-01-03
|
* output a generic pam_permit line if the primary block is emptySteve Langasek2019-01-03
|
* Use -Initial only for the first profile, even when there's no explicit -InitialSteve Langasek2019-01-03
| | | | config for that first profile
* output a generic pam_permit line if the primary block is emptySteve Langasek2019-01-03
|
* Use -Initial only for the first profile, even when there's no explicit -InitialSteve Langasek2019-01-03
| | | | config for that first profile
* fix a bug in the parser that caused error spewing if there were any lines afterSteve Langasek2019-01-03
| | | | the end of the managed block
* synchronize the state-saving format with the code actually used for comparisonsSteve Langasek2019-01-03
|
* drop '-Final' from all of the field names, but support these field names forSteve Langasek2019-01-03
| | | | backwards compatibility
* bump the referenced version number again for one /really/ final pam upload toSteve Langasek2019-01-03
| | | | | | lenny, and update the checksums to point at the current template versions (replacing the previous md5sums, since that version was never uploaded to Debian)
* drop this md5sum from the branch, it's Ubuntu-specificSteve Langasek2019-01-03
|
* add old session template md5sumSteve Langasek2019-01-03
|
* implement automatic upgrades of the templates if they're unmodifiedSteve Langasek2019-01-03
|
* first cut of a manpage for pam-auth-updateSteve Langasek2019-01-03
|
* never unlink the .pam-old file - just only create it if --force is set.Steve Langasek2019-01-03
|
* document another bug that we need to sort outSteve Langasek2019-01-03
|
* priority alone doesn't guarantee a complete sort; sort by the profile name asSteve Langasek2019-01-03
| | | | a second field, to be sure we get out all the duplicates
* filter removals out of both the available and the enabled option listsSteve Langasek2019-01-03
|
* apparently we need to use shift @ARGV here, not just shiftSteve Langasek2019-01-03
|
* fix a typoSteve Langasek2019-01-03
|
* implement --remove, which allows deconfiguring of modules in advance of packageSteve Langasek2019-01-03
| | | | removal
* optimize the grep a bit moreSteve Langasek2019-01-03
|
* filter the config list to exclude configs that no longer existSteve Langasek2019-01-03
| | | | avoid unnecessary sort/grep in the case where we already have a sorted list
* if the target doesn't already exist, don't try to copy itSteve Langasek2019-01-03
|
* fix the regex used when suppressing jump counts when reading the savedSteve Langasek2019-01-03
| | | | | config, so that we don't clobber module options with numbers in them
* another inconsistency in referring to the program nameSteve Langasek2019-01-03
|
* session needs to be handled the same way as password, with the possibility ofSteve Langasek2019-01-03
| | | | | zero primary modules
* bump the version check to 1.0.1-4; we had to upload 1.0.1-3 as a security fixSteve Langasek2019-01-03
|
* clear the state on the correct templateSteve Langasek2019-01-03
|
* @enabled needs to be a unique array, sorted by priority.Steve Langasek2019-01-03
|
* don't set high priority if --force is passed, this implies that we're in theSteve Langasek2019-01-03
| | | | initial config
* set the priority to 'high' in the case where we had an empty set of enabledSteve Langasek2019-01-03
| | | | configs and had to reset to default
* handle the case where there are no modules selected at all; this is an error,Steve Langasek2019-01-03
| | | | but we should recover gracefully to let the user un-break their system.
* set apporpriate values for the debconf question, by storing a list of knownSteve Langasek2019-01-03
| | | | configs in /var/lib/pam/seen
* we can't use 'deny' as a fallback if we aren't going to have any primarySteve Langasek2019-01-03
| | | | modules, which is generally the case for the password stack at present
* document a couple more fixmes; and adjust the priority of the right questionSteve Langasek2019-01-03
|
* add a --package option to pam-auth-update, which lowers the debconf prioritySteve Langasek2019-01-03
| | | | of the multiselect question
* if we didn't do a forced overwrite, don't leave the .pam-old files aroundSteve Langasek2019-01-03
| | | | because logically there shouldn't be any differences that warrant reviewing
* really fix up the regex used for suppressing jump counts to only apply when itSteve Langasek2019-01-03
| | | | | appears between brackets