| #%PAM-1.0 |
| |
| auth include chromeos-auth |
| auth required pam_securetty.so |
| auth required pam_tally.so file=/var/log/faillog onerr=succeed |
| auth required pam_shells.so |
| auth required pam_nologin.so |
| auth include system-auth |
| |
| account required pam_access.so |
| account include system-auth |
| account required pam_tally.so file=/var/log/faillog onerr=succeed |
| |
| password include system-auth |
| |
| #%EPAM-Use-Flag:selinux%## pam_selinux.so close should be the first session rule |
| #%EPAM-Use-Flag:selinux%#session required pam_selinux.so close |
| #%EPAM-Use-Flag:selinux%# |
| session required pam_env.so |
| session optional pam_lastlog.so |
| session optional pam_motd.so motd=/etc/motd |
| session optional pam_mail.so |
| |
| session include system-auth |
| |
| #%EPAM-Use-Flag:selinux%## pam_selinux.so open should be the last session rule |
| #%EPAM-Use-Flag:selinux%#session required pam_selinux.so multiple open |
| #%EPAM-Use-Flag:selinux%# |