summaryrefslogtreecommitdiff
path: root/debian
Commit message (Collapse)AuthorAge
* tune the whitespaceSteve Langasek2019-01-03
|
* output a generic pam_permit line if the primary block is emptySteve Langasek2019-01-03
|
* Use -Initial only for the first profile, even when there's no explicit -InitialSteve Langasek2019-01-03
| | | | config for that first profile
* output a generic pam_permit line if the primary block is emptySteve Langasek2019-01-03
|
* Use -Initial only for the first profile, even when there's no explicit -InitialSteve Langasek2019-01-03
| | | | config for that first profile
* add in the ubiquitous debhelper tokensSteve Langasek2019-01-03
|
* fix a bug in the parser that caused error spewing if there were any lines afterSteve Langasek2019-01-03
| | | | the end of the managed block
* synchronize the state-saving format with the code actually used for comparisonsSteve Langasek2019-01-03
|
* drop '-Final' from all of the field names, but support these field names forSteve Langasek2019-01-03
| | | | backwards compatibility
* refine the password profiles: these should be in a 'primary' block after all,Steve Langasek2019-01-03
| | | | paralleling the auth structure as much as possible.
* bump the referenced version number again for one /really/ final pam upload toSteve Langasek2019-01-03
| | | | | | lenny, and update the checksums to point at the current template versions (replacing the previous md5sums, since that version was never uploaded to Debian)
* drop this md5sum from the branch, it's Ubuntu-specificSteve Langasek2019-01-03
|
* add old session template md5sumSteve Langasek2019-01-03
|
* implement automatic upgrades of the templates if they're unmodifiedSteve Langasek2019-01-03
|
* first cut of a manpage for pam-auth-updateSteve Langasek2019-01-03
|
* never unlink the .pam-old file - just only create it if --force is set.Steve Langasek2019-01-03
|
* document another bug that we need to sort outSteve Langasek2019-01-03
|
* priority alone doesn't guarantee a complete sort; sort by the profile name asSteve Langasek2019-01-03
| | | | a second field, to be sure we get out all the duplicates
* filter removals out of both the available and the enabled option listsSteve Langasek2019-01-03
|
* apparently we need to use shift @ARGV here, not just shiftSteve Langasek2019-01-03
|
* fix a typoSteve Langasek2019-01-03
|
* use pam-auth-update --remove in the package prermsSteve Langasek2019-01-03
|
* implement --remove, which allows deconfiguring of modules in advance of packageSteve Langasek2019-01-03
| | | | removal
* optimize the grep a bit moreSteve Langasek2019-01-03
|
* filter the config list to exclude configs that no longer existSteve Langasek2019-01-03
| | | | avoid unnecessary sort/grep in the case where we already have a sorted list
* if the target doesn't already exist, don't try to copy itSteve Langasek2019-01-03
|
* fix the regex used when suppressing jump counts when reading the savedSteve Langasek2019-01-03
| | | | | config, so that we don't clobber module options with numbers in them
* another inconsistency in referring to the program nameSteve Langasek2019-01-03
|
* session needs to be handled the same way as password, with the possibility ofSteve Langasek2019-01-03
| | | | | zero primary modules
* merge from trunkSteve Langasek2019-01-03
|\
| * mark for uploadSteve Langasek2019-01-03
| |
| * 055_pam_unix_nullok_secure: don't call _pammodutil_tty_secure with a NULLSteve Langasek2019-01-03
| | | | | | | | | | | | tty argument, since this will cause our helper to segfault instead of returning a useful value. Thanks to Troy Davis for the report. Closes: #495806.
* | bump the version check to 1.0.1-4; we had to upload 1.0.1-3 as a security fixSteve Langasek2019-01-03
| |
* | remove spurious 'conflict' with a non-existent module, which was added just forSteve Langasek2019-01-03
| | | | | | | | example
* | clear the state on the correct templateSteve Langasek2019-01-03
| |
* | @enabled needs to be a unique array, sorted by priority.Steve Langasek2019-01-03
| |
* | don't set high priority if --force is passed, this implies that we're in theSteve Langasek2019-01-03
| | | | | | | | initial config
* | set the priority to 'high' in the case where we had an empty set of enabledSteve Langasek2019-01-03
| | | | | | | | configs and had to reset to default
* | condense the unix config, leaving out redundant features that were just forSteve Langasek2019-01-03
| | | | | | | | show
* | handle the case where there are no modules selected at all; this is an error,Steve Langasek2019-01-03
| | | | | | | | but we should recover gracefully to let the user un-break their system.
* | set apporpriate values for the debconf question, by storing a list of knownSteve Langasek2019-01-03
| | | | | | | | configs in /var/lib/pam/seen
* | we can't use 'deny' as a fallback if we aren't going to have any primarySteve Langasek2019-01-03
| | | | | | | | modules, which is generally the case for the password stack at present
* | remove incorrect use of the path when invokingSteve Langasek2019-01-03
| |
* | document a couple more fixmes; and adjust the priority of the right questionSteve Langasek2019-01-03
| |
* | it would be good if I could remember the name of the script I just wroteSteve Langasek2019-01-03
| |
* | add a --package option to pam-auth-update, which lowers the debconf prioritySteve Langasek2019-01-03
| | | | | | | | of the multiselect question
* | libpam-cracklib: versioned depend on libpam-runtime, and invoke pam-auth-configSteve Langasek2019-01-03
| | | | | | | | in the postinst
* | if we didn't do a forced overwrite, don't leave the .pam-old files aroundSteve Langasek2019-01-03
| | | | | | | | because logically there shouldn't be any differences that warrant reviewing
* | on upgrade, if we used the --force option clean up he resulting .pam-oldSteve Langasek2019-01-03
| | | | | | | | files; these are guaranteed not to contain anything of relevance.
* | really fix up the regex used for suppressing jump counts to only apply when itSteve Langasek2019-01-03
| | | | | | | | | | appears between brackets