diff options
Diffstat (limited to 'meta/recipes-extended/shadow/files/pam.d/login')
-rw-r--r-- | meta/recipes-extended/shadow/files/pam.d/login | 7 |
1 files changed, 0 insertions, 7 deletions
diff --git a/meta/recipes-extended/shadow/files/pam.d/login b/meta/recipes-extended/shadow/files/pam.d/login index e41eb04ec1..e4dacc2264 100644 --- a/meta/recipes-extended/shadow/files/pam.d/login +++ b/meta/recipes-extended/shadow/files/pam.d/login | |||
@@ -26,13 +26,6 @@ auth [success=ok ignore=ignore user_unknown=ignore default=die] pam_secur | |||
26 | # (Replaces the `NOLOGINS_FILE' option from login.defs) | 26 | # (Replaces the `NOLOGINS_FILE' option from login.defs) |
27 | auth requisite pam_nologin.so | 27 | auth requisite pam_nologin.so |
28 | 28 | ||
29 | # SELinux needs to be the first session rule. This ensures that any | ||
30 | # lingering context has been cleared. Without out this it is possible | ||
31 | # that a module could execute code in the wrong domain. | ||
32 | # When the module is present, "required" would be sufficient (When SELinux | ||
33 | # is disabled, this returns success.) | ||
34 | session [success=ok ignore=ignore module_unknown=ignore default=bad] pam_selinux.so close | ||
35 | |||
36 | # This module parses environment configuration file(s) | 29 | # This module parses environment configuration file(s) |
37 | # and also allows you to use an extended config | 30 | # and also allows you to use an extended config |
38 | # file /etc/security/pam_env.conf. | 31 | # file /etc/security/pam_env.conf. |