Difference between revisions of "PAM"
From Nuclear Physics Group Documentation Pages
Jump to navigationJump to searchLine 69: | Line 69: | ||
|- | |- | ||
| [[okra]] | | [[okra]] | ||
− | | yes | + | | yes |
| yes | | yes | ||
| yes | | yes | ||
Line 76: | Line 76: | ||
|- | |- | ||
|} | |} | ||
− | |||
== External Links == | == External Links == | ||
[http://www.kernel.org/pub/linux/libs/pam/Linux-PAM-html/sag-pam_access.html pam_access PAM module document] | [http://www.kernel.org/pub/linux/libs/pam/Linux-PAM-html/sag-pam_access.html pam_access PAM module document] |
Revision as of 13:21, 31 July 2007
"Pluggable Authentication Module." Programs that are aware of PAM use the modules defined in the PAM configuration files for making authentication/access decisions.
Access Control
/etc/pam.d/sshd contains account required pam_access.so
. /etc/security/access.conf contains the rules for who can log into the machine.
Chart of what groups can log onto what machines:
name | restricted by access.conf | nogroup | npg | farm | domain_admins |
---|---|---|---|---|---|
einstein | no | yes | yes | yes | yes |
lentil | no | yes | yes | yes | yes |
gourd | yes | yes | yes | yes | yes |
roentgen | yes | no | yes | no | no |
taro | yes | yes | yes | no? | yes |
pepper | yes | yes | no? | yes | yes |
jalapeno | yes | no | no | no | yes |
tomato | no | yes | yes | yes | yes |
okra | yes | yes | yes | yes | yes |