diff --git a/gssftp.pamd b/gssftp.pamd new file mode 100644 index 0000000..7e804b2 --- /dev/null +++ b/gssftp.pamd @@ -0,0 +1,14 @@ +#%PAM-1.0 +auth required pam_securetty.so +auth include system-auth +account required pam_nologin.so +account include system-auth +password include system-auth +# pam_selinux.so close should be the first session rule +session required pam_selinux.so close +session optional pam_keyinit.so force revoke +session include system-auth +session required pam_loginuid.so +session optional pam_console.so +# pam_selinux.so open should only be followed by sessions to be executed in the user context +session required pam_selinux.so open