Skip to content

Commit

Permalink
login: drop fedora-specific PAM config, add note to DISTRO_PORTING (#…
Browse files Browse the repository at this point in the history
…4314)

It is impossible to ship a fully generic PAM configuration upstream.
Therefore, ship a minimal configuration with the systemd --user requirements,
and add a note to DISTRO_PORTING documenting this.

Fixes #4284
  • Loading branch information
fsateler authored and poettering committed Oct 10, 2016
1 parent 84a69ca commit baed1fe
Show file tree
Hide file tree
Showing 2 changed files with 8 additions and 3 deletions.
7 changes: 7 additions & 0 deletions DISTRO_PORTING
Expand Up @@ -41,6 +41,13 @@ NTP POOL:
NTP servers, then you will get served wrong time, and will
rely on services that might not be supported for long.

PAM:
The default PAM config shipped by systemd is really bare bones.
It does not include many modules your distro might want to enable
to provide a more seamless experience. For example, limits set in
/etc/security/limits.conf will not be read unless you load pam_limits.
Make sure you add modules your distro expects from user services.

CONTRIBUTING UPSTREAM:

We generally do no longer accept distribution-specific
Expand Down
4 changes: 1 addition & 3 deletions src/login/systemd-user.m4
Expand Up @@ -2,11 +2,9 @@
#
# Used by systemd --user instances.

account include system-auth

m4_ifdef(`HAVE_SELINUX',
session required pam_selinux.so close
session required pam_selinux.so nottys open
)m4_dnl
session required pam_loginuid.so
session include system-auth
session optional pam_systemd.so

0 comments on commit baed1fe

Please sign in to comment.