Logo
Explore Help
Sign In
mirrors/security-misc
1
0
Fork 0
You've already forked security-misc
mirror of https://github.com/Kicksecure/security-misc.git synced 2025-07-14 18:00:54 +07:00
Code Issues Packages Projects Releases Wiki Activity
Files
63b476221c7b9ece6b99f9e194fab80e300275d9
security-misc/usr/share/pam-configs/tally2-security-misc

10 lines
257 B
Plaintext
Raw Normal View History

split usr/share/pam-configs/security-misc into usr/share/pam-configs/tally2-security-misc usr/share/pam-configs/wheel-security-misc
2019-08-01 11:04:22 +00:00
Name: lock accounts after 5 failed authentication attempts (by package security-misc)
Default: yes
Priority: 260
Auth-Type: Primary
Auth:
use requisite rather than required to avoid asking for password needlessly if login will fail anyhow
2019-08-15 07:30:56 +00:00
requisite pam_tally2.so deny=100 onerr=fail audit debug
effectively (not directly) add "required pam_tally2.so debug" to /etc/pam.d/common-account This is required because otherwise something like "sudo bash" would count as a failed login for pam_tally2 even though it was successful. https://bugzilla.redhat.com/show_bug.cgi?id=707660 https://forums.whonix.org/t/restrict-root-access/7658
2019-08-10 06:06:39 -04:00
Account-Type: Primary
Account:
use requisite rather than required to avoid asking for password needlessly if login will fail anyhow
2019-08-15 07:30:56 +00:00
requisite pam_tally2.so debug
Reference in New Issue Copy Permalink
Powered by Gitea Version: 1.24.1 Page: 2130ms Template: 275ms
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API