5048cec3be
- Update to 1.5.0
- obsoletes pam-bsc1178727-initialize-daysleft.patch
- Multiple minor bug fixes, portability fixes, and documentation improvements.
- Extended libpam API with pam_modutil_check_user_in_passwd function.
- pam_faillock: changed /run/faillock/$USER permissions from 0600 to 0660.
- pam_motd: read motd files with target user credentials skipping unreadable ones.
- pam_pwhistory: added a SELinux helper executable.
- pam_unix, pam_usertype: implemented avoidance of certain timing attacks.
- pam_wheel: implemented PAM_RUSER fallback for the case when getlogin fails.
- pam_env: Reading of the user environment is deprecated and will be removed
at some point in the future.
- libpam: pam_modutil_drop_priv() now correctly sets the target user's
supplementary groups, allowing pam_motd to filter messages accordingly
- Refresh pam-xauth_ownership.patch
- pam_tally2-removal.patch: Re-add pam_tally2 for deprecated sub-package
- pam_cracklib-removal.patch: Re-add pam_cracklib for deprecated sub-package
- pam_cracklib: added code to check whether the password contains
a substring of of the user's name of at least <N> characters length
in some form.
This is enabled by the new parameter "usersubstr=<N>"
See
|
||
---|---|---|
_service | ||
_servicedata | ||
.gitattributes | ||
.gitignore | ||
baselibs.conf | ||
common-account.pamd | ||
common-auth.pamd | ||
common-password.pamd | ||
common-session.pamd | ||
Linux-PAM-1.5.0-docs.tar.xz | ||
Linux-PAM-1.5.0.tar.xz | ||
other.pamd | ||
pam_cracklib-removal.patch | ||
pam_tally2-removal.patch | ||
pam-bsc1177858-dont-free-environment-string.patch | ||
pam-hostnames-in-access_conf.patch | ||
pam-limit-nproc.patch | ||
pam-login_defs-check.sh | ||
pam-pam_cracklib-add-usersubstr.patch | ||
pam-xauth_ownership.patch | ||
pam.changes | ||
pam.spec | ||
securetty | ||
unix2_chkpwd.8 | ||
unix2_chkpwd.c |