/
usr
/
share
/
doc
/
pam
/
txts
/
/usr/share/doc/pam/txts
mkdir
upload
Name
Size
Mode
Actions
README.pam_access
5253
0644
edit
dl
rm
README.pam_chroot
1510
0644
edit
dl
rm
README.pam_console
1925
0644
edit
dl
rm
README.pam_cracklib
9757
0644
edit
dl
rm
README.pam_debug
1995
0644
edit
dl
rm
README.pam_deny
1035
0644
edit
dl
rm
README.pam_echo
1100
0644
edit
dl
rm
README.pam_env
3627
0644
edit
dl
rm
README.pam_exec
2230
0644
edit
dl
rm
README.pam_faildelay
827
0644
edit
dl
rm
README.pam_faillock
6062
0644
edit
dl
rm
README.pam_filter
3102
0644
edit
dl
rm
README.pam_ftp
1699
0644
edit
dl
rm
README.pam_group
2175
0644
edit
dl
rm
README.pam_issue
1356
0644
edit
dl
rm
README.pam_keyinit
2245
0644
edit
dl
rm
README.pam_lastlog
2597
0644
edit
dl
rm
README.pam_limits
2421
0644
edit
dl
rm
README.pam_listfile
3626
0644
edit
dl
rm
README.pam_localuser
1167
0644
edit
dl
rm
README.pam_loginuid
1117
0644
edit
dl
rm
README.pam_mail
2009
0644
edit
dl
rm
README.pam_mkhomedir
1361
0644
edit
dl
rm
README.pam_motd
2588
0644
edit
dl
rm
README.pam_namespace
11543
0644
edit
dl
rm
README.pam_nologin
1348
0644
edit
dl
rm
README.pam_permit
907
0644
edit
dl
rm
README.pam_postgresok
346
0644
edit
dl
rm
README.pam_pwhistory
2243
0644
edit
dl
rm
README.pam_rhosts
1882
0644
edit
dl
rm
README.pam_rootok
1086
0644
edit
dl
rm
README.pam_securetty
1342
0644
edit
dl
rm
README.pam_selinux
2909
0644
edit
dl
rm
README.pam_sepermit
1648
0644
edit
dl
rm
README.pam_shells
653
0644
edit
dl
rm
README.pam_stress
2060
0644
edit
dl
rm
README.pam_succeed_if
2864
0644
edit
dl
rm
README.pam_time
1301
0644
edit
dl
rm
README.pam_timestamp
1616
0644
edit
dl
rm
README.pam_tty_audit
2779
0644
edit
dl
rm
README.pam_umask
1631
0644
edit
dl
rm
README.pam_unix
7265
0644
edit
dl
rm
README.pam_userdb
2973
0644
edit
dl
rm
README.pam_usertype
1200
0644
edit
dl
rm
README.pam_warn
1224
0644
edit
dl
rm
README.pam_wheel
1968
0644
edit
dl
rm
README.pam_xauth
3695
0644
edit
dl
rm
Edit:
/usr/share/doc/pam/txts/README.pam_keyinit
(2245B)
pam_keyinit — Kernel session keyring initialiser module ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━ DESCRIPTION The pam_keyinit PAM module ensures that the invoking process has a session keyring other than the user default session keyring. The session component of the module checks to see if the process's session keyring is the user default, and, if it is, creates a new anonymous session keyring with which to replace it. If a new session keyring is created, it will install a link to the user common keyring in the session keyring so that keys common to the user will be automatically accessible through it. The session keyring of the invoking process will thenceforth be inherited by all its children unless they override it. This module is intended primarily for use by login processes. Be aware that after the session keyring has been replaced, the old session keyring and the keys it contains will no longer be accessible. This module should not, generally, be invoked by programs like su, since it is usually desirable for the key set to percolate through to the alternate context. The keys have their own permissions system to manage this. This module should be included as early as possible in a PAM configuration, so that other PAM modules can attach tokens to the keyring. The keyutils package is used to manipulate keys more directly. This can be obtained from: Keyutils OPTIONS debug Log debug information with syslog(3). force Causes the session keyring of the invoking process to be replaced unconditionally. revoke Causes the session keyring of the invoking process to be revoked when the invoking process exits if the session keyring was created for this process in the first place. EXAMPLES Add this line to your login entries to start each login session with its own session keyring: session required pam_keyinit.so This will prevent keys from one session leaking into another session for the same user. AUTHOR pam_keyinit was written by David Howells, <dhowells@redhat.com>.
Save
cmd:
run