From c0d4ef1f718ac1f229a57ceb9a74cb83221a4499 Mon Sep 17 00:00:00 2001 From: Donald Buczek Date: Mon, 4 Mar 2024 14:52:31 +0100 Subject: [PATCH] etc/pam.d: Remove junk --- etc/pam.d/chage | 5 ----- etc/pam.d/chfn | 5 ----- etc/pam.d/chgpasswd | 5 ----- etc/pam.d/chpasswd | 5 ----- etc/pam.d/chsh | 5 ----- etc/pam.d/gdm | 11 ----------- etc/pam.d/gdm-fingerprint | 17 ----------------- etc/pam.d/gdm-password | 11 ----------- etc/pam.d/gdm-password.notok | 19 ------------------- etc/pam.d/gdm-password.ok | 11 ----------- etc/pam.d/gdm-smartcard | 18 ------------------ etc/pam.d/gdm-welcome | 9 --------- etc/pam.d/groupadd | 5 ----- etc/pam.d/groupdel | 5 ----- etc/pam.d/groupmems | 5 ----- etc/pam.d/groupmod | 5 ----- etc/pam.d/lightdm-autologin | 20 -------------------- etc/pam.d/newusers | 5 ----- etc/pam.d/useradd | 5 ----- etc/pam.d/userdel | 5 ----- etc/pam.d/usermod | 5 ----- 21 files changed, 181 deletions(-) delete mode 100644 etc/pam.d/chage delete mode 100644 etc/pam.d/chfn delete mode 100644 etc/pam.d/chgpasswd delete mode 100644 etc/pam.d/chpasswd delete mode 100644 etc/pam.d/chsh delete mode 100644 etc/pam.d/gdm delete mode 100644 etc/pam.d/gdm-fingerprint delete mode 100644 etc/pam.d/gdm-password delete mode 100644 etc/pam.d/gdm-password.notok delete mode 100644 etc/pam.d/gdm-password.ok delete mode 100644 etc/pam.d/gdm-smartcard delete mode 100644 etc/pam.d/gdm-welcome delete mode 100644 etc/pam.d/groupadd delete mode 100644 etc/pam.d/groupdel delete mode 100644 etc/pam.d/groupmems delete mode 100644 etc/pam.d/groupmod delete mode 100644 etc/pam.d/lightdm-autologin delete mode 100644 etc/pam.d/newusers delete mode 100644 etc/pam.d/useradd delete mode 100644 etc/pam.d/userdel delete mode 100644 etc/pam.d/usermod diff --git a/etc/pam.d/chage b/etc/pam.d/chage deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/chage +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/chfn b/etc/pam.d/chfn deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/chfn +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/chgpasswd b/etc/pam.d/chgpasswd deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/chgpasswd +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/chpasswd b/etc/pam.d/chpasswd deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/chpasswd +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/chsh b/etc/pam.d/chsh deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/chsh +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/gdm b/etc/pam.d/gdm deleted file mode 100644 index 37ce8aa..0000000 --- a/etc/pam.d/gdm +++ /dev/null @@ -1,11 +0,0 @@ -#%PAM-1.0 -auth required pam_env.so -auth required pam_succeed_if.so user != root quiet -auth sufficient pam_succeed_if.so user ingroup nopasswdlogin -auth include system-auth -account required pam_nologin.so -account include system-auth -password include system-auth -session optional pam_keyinit.so force revoke -session include system-auth -session required pam_loginuid.so diff --git a/etc/pam.d/gdm-fingerprint b/etc/pam.d/gdm-fingerprint deleted file mode 100644 index 1a1c777..0000000 --- a/etc/pam.d/gdm-fingerprint +++ /dev/null @@ -1,17 +0,0 @@ -# Sample PAM file for doing fingerprint authentication. -# Distros should replace this with what makes sense for them. -auth required pam_env.so -auth required pam_fprintd.so -auth sufficient pam_succeed_if.so uid >= 500 quiet -auth required pam_deny.so - -account required pam_unix.so -account sufficient pam_localuser.so -account sufficient pam_succeed_if.so uid < 500 quiet -account required pam_permit.so - -password required pam_deny.so - -session optional pam_keyinit.so revoke -session required pam_limits.so -session required pam_unix.so diff --git a/etc/pam.d/gdm-password b/etc/pam.d/gdm-password deleted file mode 100644 index 37ce8aa..0000000 --- a/etc/pam.d/gdm-password +++ /dev/null @@ -1,11 +0,0 @@ -#%PAM-1.0 -auth required pam_env.so -auth required pam_succeed_if.so user != root quiet -auth sufficient pam_succeed_if.so user ingroup nopasswdlogin -auth include system-auth -account required pam_nologin.so -account include system-auth -password include system-auth -session optional pam_keyinit.so force revoke -session include system-auth -session required pam_loginuid.so diff --git a/etc/pam.d/gdm-password.notok b/etc/pam.d/gdm-password.notok deleted file mode 100644 index bac431d..0000000 --- a/etc/pam.d/gdm-password.notok +++ /dev/null @@ -1,19 +0,0 @@ -# Sample PAM file for doing password authentication. -# Distros should replace this with what makes sense for them. -auth required pam_env.so -auth sufficient pam_unix.so nullok try_first_pass -auth requisite pam_succeed_if.so uid >= 500 quiet -auth required pam_deny.so - -account required pam_unix.so -account sufficient pam_localuser.so -account sufficient pam_succeed_if.so uid < 500 quiet -account required pam_permit.so - -password requisite pam_cracklib.so try_first_pass retry=3 type= -password sufficient pam_unix.so nullok try_first_pass use_authtok -password required pam_deny.so - -session optional pam_keyinit.so revoke -session required pam_limits.so -session required pam_unix.so diff --git a/etc/pam.d/gdm-password.ok b/etc/pam.d/gdm-password.ok deleted file mode 100644 index 37ce8aa..0000000 --- a/etc/pam.d/gdm-password.ok +++ /dev/null @@ -1,11 +0,0 @@ -#%PAM-1.0 -auth required pam_env.so -auth required pam_succeed_if.so user != root quiet -auth sufficient pam_succeed_if.so user ingroup nopasswdlogin -auth include system-auth -account required pam_nologin.so -account include system-auth -password include system-auth -session optional pam_keyinit.so force revoke -session include system-auth -session required pam_loginuid.so diff --git a/etc/pam.d/gdm-smartcard b/etc/pam.d/gdm-smartcard deleted file mode 100644 index d5ac1fa..0000000 --- a/etc/pam.d/gdm-smartcard +++ /dev/null @@ -1,18 +0,0 @@ -# Sample PAM file for doing smartcard authentication. -# Distros should replace this with what makes sense for them. -auth required pam_env.so -auth [success=done ignore=ignore default=die] pam_pkcs11.so wait_for_card card_only -auth requisite pam_succeed_if.so uid >= 500 quiet -auth required pam_deny.so - -account required pam_unix.so -account sufficient pam_localuser.so -account sufficient pam_succeed_if.so uid < 500 quiet -account required pam_permit.so - -password optional pam_pkcs11.so -password requisite pam_cracklib.so try_first_pass retry=3 type= - -session optional pam_keyinit.so revoke -session required pam_limits.so -session required pam_unix.so diff --git a/etc/pam.d/gdm-welcome b/etc/pam.d/gdm-welcome deleted file mode 100644 index b301f4f..0000000 --- a/etc/pam.d/gdm-welcome +++ /dev/null @@ -1,9 +0,0 @@ -#%PAM-1.0 -auth required pam_env.so -auth required pam_permit.so -account required pam_nologin.so -account include system-auth -password include system-auth -session required pam_loginuid.so -session optional pam_keyinit.so force revoke -session include system-auth diff --git a/etc/pam.d/groupadd b/etc/pam.d/groupadd deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/groupadd +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/groupdel b/etc/pam.d/groupdel deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/groupdel +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/groupmems b/etc/pam.d/groupmems deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/groupmems +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/groupmod b/etc/pam.d/groupmod deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/groupmod +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/lightdm-autologin b/etc/pam.d/lightdm-autologin deleted file mode 100644 index ba7a68c..0000000 --- a/etc/pam.d/lightdm-autologin +++ /dev/null @@ -1,20 +0,0 @@ -#%PAM-1.0 - -# Block login if they are globally disabled -auth required pam_nologin.so - -# Load environment from /etc/environment and ~/.pam_environment -auth required pam_env.so - -# Allow access without authentication -auth required pam_permit.so - -# Stop autologin if account requires action -account required pam_unix.so - -# Can't change password -password required pam_deny.so - -# Setup session -session required pam_unix.so -session optional pam_systemd.so diff --git a/etc/pam.d/newusers b/etc/pam.d/newusers deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/newusers +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/useradd b/etc/pam.d/useradd deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/useradd +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/userdel b/etc/pam.d/userdel deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/userdel +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so diff --git a/etc/pam.d/usermod b/etc/pam.d/usermod deleted file mode 100644 index d200f4a..0000000 --- a/etc/pam.d/usermod +++ /dev/null @@ -1,5 +0,0 @@ -auth sufficient pam_rootok.so -auth required pam_unix.so -account required pam_unix.so -session required pam_unix.so -password required pam_permit.so