From 71b330e9d47b3fac7edd224a285e8b1f0142ccf9 Mon Sep 17 00:00:00 2001 From: Matthew Garrett Date: Thu, 5 May 2016 09:18:24 +0100 Subject: [PATCH] sys-auth/pambase: Change pam_sss handling for account stanza Having this be effectively required isn't appropriate when we default to having sssd be disabled. --- .../sys-auth/pambase/files/pambase-20120417-sssd.patch | 2 +- .../{pambase-20120417-r4.ebuild => pambase-20120417-r5.ebuild} | 0 2 files changed, 1 insertion(+), 1 deletion(-) rename sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/{pambase-20120417-r4.ebuild => pambase-20120417-r5.ebuild} (100%) diff --git a/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/files/pambase-20120417-sssd.patch b/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/files/pambase-20120417-sssd.patch index 842ec42eeb..436131d29a 100644 --- a/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/files/pambase-20120417-sssd.patch +++ b/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/files/pambase-20120417-sssd.patch @@ -15,7 +15,7 @@ diff -ur pambase-20140313.orig/system-auth.in pambase-20140313/system-auth.in #endif account required pam_unix.so DEBUG /* This is needed to make sure that the Kerberos skip-on-success won't cause a bad jump. */ -+account [default=bad success=ok user_unknown=ignore] pam_sss.so ++account sufficient pam_sss.so account optional pam_permit.so #if HAVE_CRACKLIB diff --git a/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/pambase-20120417-r4.ebuild b/sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/pambase-20120417-r5.ebuild similarity index 100% rename from sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/pambase-20120417-r4.ebuild rename to sdk_container/src/third_party/coreos-overlay/sys-auth/pambase/pambase-20120417-r5.ebuild