Re: shadow 4.0.8 and it's etc/login.defs.linux
Kyle Sallee <[email protected]> Tue, 26 Apr 2005 12:00:03 -0700
| Newsgroups | gmane.linux.pld.shadow.general |
|---|---|
| Message-ID | <[email protected]> |
Thanks for the explanation. In the meanwhile I will filter out the unused items from login.defs when PAM is enabled. And I will be alert to an eventual shadow release that uses /etc/default/<program> instead of /etc/login.defs On 4/26/05, Tomasz Kłoczko <[email protected]> wrote: > On Mon, 25 Apr 2005, Kyle Sallee wrote: > > > I knowticed the manual page for login.defs says: > > "Much of the functionality that used to be provided by the shadow pass- > > word suite is now handled by PAM." > > > > su and login now report: > > > > configuration error - unknown item 'FAIL_DELAY' (notify administrator) > > configuration error - unknown item 'FAILLOG_ENAB' (notify administrator) > > configuration error - unknown item 'LASTLOG_ENAB' (notify administrator) > > configuration error - unknown item 'MAIL_CHECK_ENAB' (notify administrator) > > configuration error - unknown item 'OBSCURE_CHECKS_ENAB' (notify administrator) > > configuration error - unknown item 'PORTTIME_CHECKS_ENAB' (notify administrator) > > configuration error - unknown item 'QUOTAS_ENAB' (notify administrator) > > configuration error - unknown item 'MOTD_FILE' (notify administrator) > > configuration error - unknown item 'FTMP_FILE' (notify administrator) > > configuration error - unknown item 'NOLOGINS_FILE' (notify administrator) > > configuration error - unknown item 'MAIL_DIR' (notify administrator) > > configuration error - unknown item 'ENV_HZ' (notify administrator) > > configuration error - unknown item 'ENV_SUPATH' (notify administrator) > > configuration error - unknown item 'ENV_PATH' (notify administrator) > > configuration error - unknown item 'PASS_MAX_DAYS' (notify administrator) > > configuration error - unknown item 'PASS_MIN_DAYS' (notify administrator) > > configuration error - unknown item 'PASS_MIN_LEN' (notify administrator) > > configuration error - unknown item 'PASS_WARN_AGE' (notify administrator) > > configuration error - unknown item 'SU_WHEEL_ONLY' (notify administrator) > > configuration error - unknown item 'CRACKLIB_DICTPATH' (notify administrator) > > configuration error - unknown item 'PASS_CHANGE_TRIES' (notify administrator) > > configuration error - unknown item 'PASS_ALWAYS_WARN' (notify administrator) > > configuration error - unknown item 'CHFN_AUTH' (notify administrator) > > configuration error - unknown item 'DEFAULT_HOME' (notify administrator) > > configuration error - unknown item 'ENVIRON_FILE' (notify administrator) > > configuration error - unknown item 'ENV_TZ' (notify administrator) > > configuration error - unknown item 'ENV_HZ' (notify administrator) > > Password: > > configuration error - unknown item 'ENV_SUPATH' (notify administrator) > > configuration error - unknown item 'ENV_SUPATH' (notify administrator) > > configuration error - unknown item 'QMAIL_DIR' (notify administrator) > > configuration error - unknown item 'MAIL_DIR' (notify administrator) > > configuration error - unknown item 'MAIL_FILE' (notify administrator) > > > > login also gives those configuration errors. > > And this is correct. This varables are now disabled if shadow is > configured with PAM support enabled because all code managed by abowe > variables are disabled in this case. Handle faillog it is task for > pam_tally. Setting enviroment variables it is pam_env. Display mail > notitications it is task for pam_mail .. etc. > > > Perhaps those lines should be removed from /etc/login.defs? > > Yes .. in case when PAM support was enabled. > > > Should they not already be removed from the default > > configuration files etc/login.defs.linux in the shadow 4.0.8 tarball, please? > > Better .. this file must be generated depending on disable/enable PAM > support on autoconf level. > > In longer time I want move as amny as possible variables from > /etc/login.defs to /etc/default/<program> (best will be IMO completly > remove handle /etc/login.defs). > Now some programs uses two configuration files and APIs (like useradd one > for /etc/login.defs and second for handle /etc/default/useradd). I want > repalce this by one (common for handle /etc/default/<program>). > > kloczek > -- > ----------------------------------------------------------- > *Ludzie nie mają problemów, tylko sobie sami je stwarzają* > ----------------------------------------------------------- > Tomasz Kłoczko, sys adm @zie.pg.gda.pl|*e-mail: [email protected]*