summaryrefslogtreecommitdiff
path: root/debian/openssh-server.sshd.pam
diff options
context:
space:
mode:
Diffstat (limited to 'debian/openssh-server.sshd.pam')
-rw-r--r--debian/openssh-server.sshd.pam39
1 files changed, 39 insertions, 0 deletions
diff --git a/debian/openssh-server.sshd.pam b/debian/openssh-server.sshd.pam
new file mode 100644
index 000000000..9b7695184
--- /dev/null
+++ b/debian/openssh-server.sshd.pam
@@ -0,0 +1,39 @@
1# PAM configuration for the Secure Shell service
2
3# Read environment variables from /etc/environment and
4# /etc/security/pam_env.conf.
5auth required pam_env.so # [1]
6# In Debian 4.0 (etch), locale-related environment variables were moved to
7# /etc/default/locale, so read that as well.
8auth required pam_env.so envfile=/etc/default/locale
9
10# Standard Un*x authentication.
11@include common-auth
12
13# Disallow non-root logins when /etc/nologin exists.
14account required pam_nologin.so
15
16# Uncomment and edit /etc/security/access.conf if you need to set complex
17# access limits that are hard to express in sshd_config.
18# account required pam_access.so
19
20# Standard Un*x authorization.
21@include common-account
22
23# Standard Un*x session setup and teardown.
24@include common-session
25
26# Print the message of the day upon successful login.
27session optional pam_motd.so # [1]
28
29# Print the status of the user's mailbox upon successful login.
30session optional pam_mail.so standard noenv # [1]
31
32# Set up user limits from /etc/security/limits.conf.
33session required pam_limits.so
34
35# Set up SELinux capabilities (need modified pam)
36# session required pam_selinux.so multiple
37
38# Standard Un*x password updating.
39@include common-password