summaryrefslogtreecommitdiff
path: root/data/pam-redhat
diff options
context:
space:
mode:
authorRay Strode <rstrode@redhat.com>2015-01-16 09:46:26 -0500
committerRay Strode <rstrode@redhat.com>2015-01-16 09:48:27 -0500
commit4d25bda84d9ed57efecb8a6444ef8d978f74b2d6 (patch)
treefa51b864e1402ef2bc300876a544971535477800 /data/pam-redhat
parented45a1d0763b348bf3a3a71c9bef67dd0545a019 (diff)
downloadgdm-4d25bda84d9ed57efecb8a6444ef8d978f74b2d6.tar.gz
Revert "pam: drop postlogin from fedora pam config"
This reverts commit 76d26d8c1c37c6bd38bcac082d5cc62670fe5d39. It breaks pam_ecryptfs. Downstream: https://bugzilla.redhat.com/show_bug.cgi?id=1174366 https://bugzilla.gnome.org/show_bug.cgi?id=743045
Diffstat (limited to 'data/pam-redhat')
-rw-r--r--data/pam-redhat/gdm-autologin.pam2
-rw-r--r--data/pam-redhat/gdm-fingerprint.pam2
-rw-r--r--data/pam-redhat/gdm-launch-environment.pam2
-rw-r--r--data/pam-redhat/gdm-password.pam2
-rw-r--r--data/pam-redhat/gdm-pin.pam2
-rw-r--r--data/pam-redhat/gdm-smartcard.pam2
-rw-r--r--data/pam-redhat/gdm.pam3
7 files changed, 15 insertions, 0 deletions
diff --git a/data/pam-redhat/gdm-autologin.pam b/data/pam-redhat/gdm-autologin.pam
index 08d4543e..0616e66f 100644
--- a/data/pam-redhat/gdm-autologin.pam
+++ b/data/pam-redhat/gdm-autologin.pam
@@ -1,6 +1,7 @@
#%PAM-1.0
auth required pam_env.so
auth required pam_permit.so
+auth include postlogin
account required pam_nologin.so
account include system-auth
password include system-auth
@@ -12,3 +13,4 @@ session required pam_selinux.so open
session optional pam_keyinit.so force revoke
session required pam_namespace.so
session include system-auth
+session include postlogin
diff --git a/data/pam-redhat/gdm-fingerprint.pam b/data/pam-redhat/gdm-fingerprint.pam
index ee0635d3..c5a35985 100644
--- a/data/pam-redhat/gdm-fingerprint.pam
+++ b/data/pam-redhat/gdm-fingerprint.pam
@@ -1,4 +1,5 @@
auth substack fingerprint-auth
+auth include postlogin
account required pam_nologin.so
account include fingerprint-auth
@@ -13,3 +14,4 @@ session required pam_selinux.so open
session optional pam_keyinit.so force revoke
session required pam_namespace.so
session include fingerprint-auth
+session include postlogin
diff --git a/data/pam-redhat/gdm-launch-environment.pam b/data/pam-redhat/gdm-launch-environment.pam
index f1811f14..a5130ea6 100644
--- a/data/pam-redhat/gdm-launch-environment.pam
+++ b/data/pam-redhat/gdm-launch-environment.pam
@@ -1,7 +1,9 @@
#%PAM-1.0
auth required pam_env.so
auth required pam_permit.so
+auth include postlogin
account include system-auth
password include system-auth
session optional pam_keyinit.so force revoke
session include system-auth
+session include postlogin
diff --git a/data/pam-redhat/gdm-password.pam b/data/pam-redhat/gdm-password.pam
index b95ca164..3006d0ca 100644
--- a/data/pam-redhat/gdm-password.pam
+++ b/data/pam-redhat/gdm-password.pam
@@ -1,6 +1,7 @@
auth [success=done ignore=ignore default=bad] pam_selinux_permit.so
auth substack password-auth
auth optional pam_gnome_keyring.so
+auth include postlogin
account required pam_nologin.so
account include password-auth
@@ -17,3 +18,4 @@ session optional pam_keyinit.so force revoke
session required pam_namespace.so
session include password-auth
session optional pam_gnome_keyring.so auto_start
+session include postlogin
diff --git a/data/pam-redhat/gdm-pin.pam b/data/pam-redhat/gdm-pin.pam
index d0a4e71e..75946532 100644
--- a/data/pam-redhat/gdm-pin.pam
+++ b/data/pam-redhat/gdm-pin.pam
@@ -2,6 +2,7 @@ auth [success=done ignore=ignore default=bad] pam_selinux_permit.so
auth requisite pam_pin.so
auth substack password-auth
auth optional pam_gnome_keyring.so
+auth include postlogin
account required pam_nologin.so
account include password-auth
@@ -18,3 +19,4 @@ session optional pam_keyinit.so force revoke
session required pam_namespace.so
session include password-auth
session optional pam_gnome_keyring.so auto_start
+session include postlogin
diff --git a/data/pam-redhat/gdm-smartcard.pam b/data/pam-redhat/gdm-smartcard.pam
index d49eef9c..c91cf0d1 100644
--- a/data/pam-redhat/gdm-smartcard.pam
+++ b/data/pam-redhat/gdm-smartcard.pam
@@ -1,4 +1,5 @@
auth substack smartcard-auth
+auth include postlogin
account required pam_nologin.so
account include smartcard-auth
@@ -13,3 +14,4 @@ session required pam_selinux.so open
session optional pam_keyinit.so force revoke
session required pam_namespace.so
session include smartcard-auth
+session include postlogin
diff --git a/data/pam-redhat/gdm.pam b/data/pam-redhat/gdm.pam
index 9d95a512..baa058b1 100644
--- a/data/pam-redhat/gdm.pam
+++ b/data/pam-redhat/gdm.pam
@@ -1,10 +1,13 @@
#%PAM-1.0
auth required pam_env.so
auth sufficient pam_succeed_if.so user ingroup nopasswdlogin
+auth include postlogin
auth include system-auth
+account required pam_nologin.so
account include system-auth
password include system-auth
session optional pam_keyinit.so force revoke
session include system-auth
session required pam_loginuid.so
session optional pam_console.so
+session include postlogin