Initial import from FreeBSD RELENG_4:
[dragonfly.git] / crypto / kerberosIV / lib / auth / pam / pam.conf.add
1 To enable PAM in dtlogin and /bin/login under SunOS 5.6 apply this patch:
2
3 --- /etc/pam.conf.DIST  Mon Jul 20 15:37:46 1998
4 +++ /etc/pam.conf       Tue Feb 15 19:39:12 2000
5 @@ -4,15 +4,19 @@
6  #
7  # Authentication management
8  #
9 +login  auth sufficient /usr/athena/lib/pam_krb4.so
10  login  auth required   /usr/lib/security/pam_unix.so.1 
11  login  auth required   /usr/lib/security/pam_dial_auth.so.1 
12  #
13  rlogin  auth sufficient /usr/lib/security/pam_rhosts_auth.so.1
14  rlogin auth required   /usr/lib/security/pam_unix.so.1
15  #
16 +dtlogin        auth sufficient /usr/athena/lib/pam_krb4.so
17  dtlogin        auth required   /usr/lib/security/pam_unix.so.1 
18  #
19  rsh    auth required   /usr/lib/security/pam_rhosts_auth.so.1
20 +# Reafslog is for dtlogin lock display
21 +other  auth sufficient /usr/athena/lib/pam_krb4.so reafslog
22  other  auth required   /usr/lib/security/pam_unix.so.1
23  #
24  # Account management
25 @@ -24,6 +28,8 @@
26  #
27  # Session management
28  #
29 +dtlogin        session required        /usr/athena/lib/pam_krb4.so
30 +login  session required        /usr/athena/lib/pam_krb4.so
31  other  session required        /usr/lib/security/pam_unix.so.1 
32  #
33  # Password management
34 ---------------------------------------------------------------------------
35 To enable PAM in /bin/login and xdm under Red Hat 6.1 apply these patches:
36
37 --- /etc/pam.d/login~   Thu Jul  8 00:14:02 1999
38 +++ /etc/pam.d/login    Mon Aug 30 14:33:12 1999
39 @@ -1,9 +1,12 @@
40  #%PAM-1.0
41 +# Updated to work with kerberos
42 +auth       sufficient   /lib/security/pam_krb4.so
43  auth       required    /lib/security/pam_securetty.so
44  auth       required    /lib/security/pam_pwdb.so shadow nullok
45  auth       required    /lib/security/pam_nologin.so
46  account    required    /lib/security/pam_pwdb.so
47  password   required    /lib/security/pam_cracklib.so
48  password   required    /lib/security/pam_pwdb.so nullok use_authtok shadow
49 +session    required     /lib/security/pam_krb4.so
50  session    required    /lib/security/pam_pwdb.so
51  session    optional    /lib/security/pam_console.so
52 --- /etc/pam.d/xdm~     Mon Jun 14 17:39:05 1999
53 +++ /etc/pam.d/xdm      Mon Aug 30 14:54:51 1999
54 @@ -1,8 +1,10 @@
55  #%PAM-1.0
56 +auth       sufficient   /lib/security/pam_krb4.so
57  auth       required    /lib/security/pam_pwdb.so shadow nullok
58  auth       required    /lib/security/pam_nologin.so
59  account    required    /lib/security/pam_pwdb.so
60  password   required    /lib/security/pam_cracklib.so
61  password   required    /lib/security/pam_pwdb.so shadow nullok use_authtok
62 +session    required     /lib/security/pam_krb4.so
63  session    required    /lib/security/pam_pwdb.so
64  session    optional     /lib/security/pam_console.so
65 --------------------------------------------------------------------------
66
67 This stuff may work under some other system.
68
69 # To get this to work, you will have to add entries to /etc/pam.conf
70 #
71 # To make login kerberos-aware, you might change pam.conf to look
72 # like:
73
74 # login authorization
75 login   auth       sufficient   /lib/security/pam_krb4.so
76 login   auth       required     /lib/security/pam_securetty.so
77 login   auth       required     /lib/security/pam_unix_auth.so
78 login   account    required     /lib/security/pam_unix_acct.so
79 login   password   required     /lib/security/pam_unix_passwd.so
80 login   session    required     /lib/security/pam_krb4.so
81 login   session    required     /lib/security/pam_unix_session.so