Samba, OpenLDAP, Kerberos: creare un controller di dominio sicuro con Debian Lenny: differenze tra le versioni
Vai alla navigazione
Vai alla ricerca
Riga 1 658: | Riga 1 658: | ||
'''/etc/pam.d/common-account'''<br/> | '''/etc/pam.d/common-account'''<br/> | ||
<pre> | <pre> | ||
account sufficient pam_unix.so | |||
account sufficient pam_ldap.so | |||
account sufficient pam_krb5.so | |||
account required pam_deny.so | |||
account sufficient | |||
account required | |||
</pre> | </pre> | ||
<br/> | <br/> | ||
'''/etc/pam.d/common-auth'''<br/> | '''/etc/pam.d/common-auth'''<br/> | ||
<pre> | <pre> | ||
auth sufficient pam_unix.so nullok_secure | |||
auth sufficient pam_ldap.so | |||
auth sufficient pam_krb5.so use_first_pass | |||
auth required pam_deny.so | |||
auth sufficient | |||
auth required | |||
</pre> | </pre> | ||
<br/> | <br/> | ||
'''/etc/pam.d/common-password'''<br/> | '''/etc/pam.d/common-password'''<br/> | ||
<pre> | <pre> | ||
password sufficient pam_unix.so nullok obscure md5 | |||
password required pam_winbind.so | |||
password sufficient pam_ldap.so | |||
password sufficient pam_ldap.so | |||
</pre> | </pre> | ||
<br/> | <br/> | ||
'''/etc/pam.d/common-session'''<br/> | '''/etc/pam.d/common-session'''<br/> | ||
<pre> | <pre> | ||
session | session optional pam_unix.so | ||
session | session optional pam_krb5.so | ||
session optional pam_mkhomedir.so skel=/etc/skel/ umask=077 | |||
session sufficient pam_ldap.so | |||
</pre> | </pre> | ||