blob: 847ec1b888b2b482d77f9addfe54de749a14e2a6 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
|
#%PAM-1.0
# For root login to succeed here with pam_securetty, "ekshell" must be
# listed in /etc/securetty.
auth required pam_nologin.so
auth required pam_securetty.so
auth required pam_env.so
auth required pam_rhosts_auth.so
account include system-auth
# pam_selinux.so close should be the first session rule
session required pam_selinux.so close
session optional pam_keyinit.so force revoke
session include system-auth
# pam_selinux.so open should only be called for sessions to be executed in the user context
session required pam_loginuid.so
session required pam_selinux.so open
|