summaryrefslogtreecommitdiffstats
path: root/gdm/pam
diff options
context:
space:
mode:
Diffstat (limited to 'gdm/pam')
-rw-r--r--gdm/pam/gdm-autologin.pam18
-rw-r--r--gdm/pam/gdm-fingerprint.pam18
-rw-r--r--gdm/pam/gdm-password.pam20
-rw-r--r--gdm/pam/gdm-smartcard.pam18
-rw-r--r--gdm/pam/gdm-welcome.pam12
-rw-r--r--gdm/pam/gdm.pam10
6 files changed, 96 insertions, 0 deletions
diff --git a/gdm/pam/gdm-autologin.pam b/gdm/pam/gdm-autologin.pam
new file mode 100644
index 0000000..c77c789
--- /dev/null
+++ b/gdm/pam/gdm-autologin.pam
@@ -0,0 +1,18 @@
+#%PAM-1.0
+auth requisite pam_nologin.so
+auth required pam_env.so
+
+auth requisite pam_permit.so
+
+auth sufficient pam_succeed_if.so uid >= 1000 quiet
+auth required pam_deny.so
+
+account required pam_unix.so
+
+password required pam_deny.so
+
+session required pam_loginuid.so
+-session optional pam_systemd.so
+session optional pam_keyinit.so revoke
+session required pam_limits.so
+session required pam_unix.so
diff --git a/gdm/pam/gdm-fingerprint.pam b/gdm/pam/gdm-fingerprint.pam
new file mode 100644
index 0000000..5b74bf6
--- /dev/null
+++ b/gdm/pam/gdm-fingerprint.pam
@@ -0,0 +1,18 @@
+#%PAM-1.0
+auth requisite pam_nologin.so
+auth required pam_env.so
+
+auth requisite pam_fprintd.so
+
+auth sufficient pam_succeed_if.so uid >= 1000 quiet
+auth required pam_deny.so
+
+account required pam_unix.so
+
+password required pam_deny.so
+
+session required pam_loginuid.so
+-session optional pam_systemd.so
+session optional pam_keyinit.so revoke
+session required pam_limits.so
+session required pam_unix.so
diff --git a/gdm/pam/gdm-password.pam b/gdm/pam/gdm-password.pam
new file mode 100644
index 0000000..7beda83
--- /dev/null
+++ b/gdm/pam/gdm-password.pam
@@ -0,0 +1,20 @@
+#%PAM-1.0
+auth requisite pam_nologin.so
+auth required pam_env.so
+
+auth requisite pam_unix.so nullok
+auth optional pam_gnome_keyring.so
+
+auth sufficient pam_succeed_if.so uid >= 1000 quiet
+auth required pam_deny.so
+
+account required pam_unix.so
+
+password required pam_unix.so
+
+session required pam_loginuid.so
+-session optional pam_systemd.so
+session optional pam_keyinit.so revoke
+session required pam_limits.so
+session required pam_unix.so
+session optional pam_gnome_keyring.so auto_start
diff --git a/gdm/pam/gdm-smartcard.pam b/gdm/pam/gdm-smartcard.pam
new file mode 100644
index 0000000..baacb8b
--- /dev/null
+++ b/gdm/pam/gdm-smartcard.pam
@@ -0,0 +1,18 @@
+#%PAM-1.0
+auth requisite pam_nologin.so
+auth required pam_env.so
+
+auth requisite pam_pkcs11.so wait_for_card card_only
+
+auth sufficient pam_succeed_if.so uid >= 1000 quiet
+auth required pam_deny.so
+
+account required pam_unix.so
+
+password required pam_pkcs11.so
+
+session required pam_loginuid.so
+-session optional pam_systemd.so
+session optional pam_keyinit.so revoke
+session required pam_limits.so
+session required pam_unix.so
diff --git a/gdm/pam/gdm-welcome.pam b/gdm/pam/gdm-welcome.pam
new file mode 100644
index 0000000..cc3811c
--- /dev/null
+++ b/gdm/pam/gdm-welcome.pam
@@ -0,0 +1,12 @@
+#%PAM-1.0
+auth required pam_env.so
+auth required pam_permit.so
+
+account required pam_nologin.so
+account required pam_unix.so
+
+password required pam_deny.so
+
+session required pam_loginuid.so
+-session optional pam_systemd.so
+session optional pam_keyinit.so force revoke
diff --git a/gdm/pam/gdm.pam b/gdm/pam/gdm.pam
new file mode 100644
index 0000000..655299c
--- /dev/null
+++ b/gdm/pam/gdm.pam
@@ -0,0 +1,10 @@
+#%PAM-1.0
+auth requisite pam_nologin.so
+auth required pam_env.so
+auth required pam_unix.so
+auth optional pam_gnome_keyring.so
+account required pam_unix.so
+session required pam_limits.so
+session required pam_unix.so
+session optional pam_gnome_keyring.so auto_start
+password required pam_unix.so