[gdm] pam-exherbo,pam-redhat: avoid password-auth/common-auth
- From: Ray Strode <halfline src gnome org>
- To: commits-list gnome org
- Cc:
- Subject: [gdm] pam-exherbo,pam-redhat: avoid password-auth/common-auth
- Date: Wed, 7 Sep 2016 18:40:24 +0000 (UTC)
commit 154b45107998b0fa4b8c8c84337593bf0d468f12
Author: Ray Strode <rstrode redhat com>
Date: Wed Sep 7 14:37:24 2016 -0400
pam-exherbo,pam-redhat: avoid password-auth/common-auth
In theory sending the password to them could be beneficial.
If for instance, they have pam_krb5 or pam_ecryptfs or pam_sss.
In practice, the stacks will fail if the passwords don't match,
and prevent autologin from continuing.
This commit just sidesteps them for now. Eventually,
authconfig/et al, will need to get updated to accomodate us.
data/pam-exherbo/gdm-autologin.pam | 3 +--
data/pam-redhat/gdm-autologin.pam | 4 +---
2 files changed, 2 insertions(+), 5 deletions(-)
---
diff --git a/data/pam-exherbo/gdm-autologin.pam b/data/pam-exherbo/gdm-autologin.pam
index 61f8e54..1324f36 100644
--- a/data/pam-exherbo/gdm-autologin.pam
+++ b/data/pam-exherbo/gdm-autologin.pam
@@ -2,8 +2,7 @@
# except for the authentication method, which is:
# always permit login
-auth [success=ok default=2] pam_gdm.so
-auth substack system-local-login
+auth [success=ok default=1] pam_gdm.so
-auth optional pam_gnome_keyring.so
auth sufficient pam_permit.so
diff --git a/data/pam-redhat/gdm-autologin.pam b/data/pam-redhat/gdm-autologin.pam
index 823c87a..c31ff27 100644
--- a/data/pam-redhat/gdm-autologin.pam
+++ b/data/pam-redhat/gdm-autologin.pam
@@ -1,8 +1,6 @@
#%PAM-1.0
-auth [success=ok default=3] pam_gdm.so
+auth [success=ok default=1] pam_gdm.so
-auth optional pam_gnome_keyring.so
-auth include password-auth
-auth include postlogin
auth sufficient pam_permit.so
account required pam_nologin.so
account include system-auth
[
Date Prev][
Date Next] [
Thread Prev][
Thread Next]
[
Thread Index]
[
Date Index]
[
Author Index]