]> git.ipfire.org Git - thirdparty/systemd.git/commitdiff
man: bring example PAM snippet of pam_systemd and pam_systemd_home back in sync 15735/head
authorLennart Poettering <lennart@poettering.net>
Wed, 6 May 2020 20:28:37 +0000 (22:28 +0200)
committerLennart Poettering <lennart@poettering.net>
Wed, 6 May 2020 20:30:43 +0000 (22:30 +0200)
Let's make it the same snippet, just highlight different lines.

man/pam_systemd.xml

index 694371c2c47aeb3cf4c0fdc138266cd92fe777b4..c823faaaed3a63b1986fb9827332805c4f5df190 100644 (file)
@@ -308,19 +308,24 @@ pam_set_data(handle, "systemd.runtime_max_sec", (void *)"3600", cleanup);
     <filename>systemd-logind.service</filename>:</para>
 
     <programlisting>#%PAM-1.0
-auth     sufficient pam_unix.so
-auth     required   pam_deny.so
-
-account  required   pam_nologin.so
-account  sufficient pam_unix.so
-account  required   pam_permit.so
-
-password sufficient pam_unix.so sha512 shadow try_first_pass try_authtok
-password required   pam_deny.so
-
--session optional   pam_loginuid.so
--session optional   pam_systemd.so
-session  required   pam_unix.so</programlisting>
+auth      sufficient pam_unix.so
+-auth     sufficient pam_systemd_home.so
+auth      required   pam_deny.so
+
+account   required   pam_nologin.so
+-account  sufficient pam_systemd_home.so
+account   sufficient pam_unix.so
+account   required   pam_permit.so
+
+-password sufficient pam_systemd_home.so
+password  sufficient pam_unix.so sha512 shadow try_first_pass try_authtok
+password  required   pam_deny.so
+
+-session  optional   pam_keyinit.so revoke
+-session  optional   pam_loginuid.so
+-session  optional   pam_systemd_home.so
+<command>-session  optional   pam_systemd.so</command>
+session   required   pam_unix.so</programlisting>
   </refsect1>
 
   <refsect1>