/
usr
/
share
/
doc
/
pam
/
txts
/
/usr/share/doc/pam/txts
mkdir
upload
Name
Size
Mode
Actions
README.pam_access
5253
0644
edit
dl
rm
README.pam_chroot
1510
0644
edit
dl
rm
README.pam_console
1925
0644
edit
dl
rm
README.pam_cracklib
9757
0644
edit
dl
rm
README.pam_debug
1995
0644
edit
dl
rm
README.pam_deny
1035
0644
edit
dl
rm
README.pam_echo
1100
0644
edit
dl
rm
README.pam_env
3627
0644
edit
dl
rm
README.pam_exec
2230
0644
edit
dl
rm
README.pam_faildelay
827
0644
edit
dl
rm
README.pam_faillock
6062
0644
edit
dl
rm
README.pam_filter
3102
0644
edit
dl
rm
README.pam_ftp
1699
0644
edit
dl
rm
README.pam_group
2175
0644
edit
dl
rm
README.pam_issue
1356
0644
edit
dl
rm
README.pam_keyinit
2245
0644
edit
dl
rm
README.pam_lastlog
2597
0644
edit
dl
rm
README.pam_limits
2421
0644
edit
dl
rm
README.pam_listfile
3626
0644
edit
dl
rm
README.pam_localuser
1167
0644
edit
dl
rm
README.pam_loginuid
1117
0644
edit
dl
rm
README.pam_mail
2009
0644
edit
dl
rm
README.pam_mkhomedir
1361
0644
edit
dl
rm
README.pam_motd
2588
0644
edit
dl
rm
README.pam_namespace
11543
0644
edit
dl
rm
README.pam_nologin
1348
0644
edit
dl
rm
README.pam_permit
907
0644
edit
dl
rm
README.pam_postgresok
346
0644
edit
dl
rm
README.pam_pwhistory
2243
0644
edit
dl
rm
README.pam_rhosts
1882
0644
edit
dl
rm
README.pam_rootok
1086
0644
edit
dl
rm
README.pam_securetty
1342
0644
edit
dl
rm
README.pam_selinux
2909
0644
edit
dl
rm
README.pam_sepermit
1648
0644
edit
dl
rm
README.pam_shells
653
0644
edit
dl
rm
README.pam_stress
2060
0644
edit
dl
rm
README.pam_succeed_if
2864
0644
edit
dl
rm
README.pam_time
1301
0644
edit
dl
rm
README.pam_timestamp
1616
0644
edit
dl
rm
README.pam_tty_audit
2779
0644
edit
dl
rm
README.pam_umask
1631
0644
edit
dl
rm
README.pam_unix
7265
0644
edit
dl
rm
README.pam_userdb
2973
0644
edit
dl
rm
README.pam_usertype
1200
0644
edit
dl
rm
README.pam_warn
1224
0644
edit
dl
rm
README.pam_wheel
1968
0644
edit
dl
rm
README.pam_xauth
3695
0644
edit
dl
rm
Edit:
/usr/share/doc/pam/txts/README.pam_wheel
(1968B)
pam_wheel -- Only permit root access to members of group wheel -------------------------------------------------------------------------- DESCRIPTION The pam_wheel PAM module is used to enforce the so-called wheel group. By default it permits root access to the system if the applicant user is a member of the wheel group. If no group with this name exist, the module is using the group with the group-ID 0. OPTIONS debug Print debug information. deny Reverse the sense of the auth operation: if the user is trying to get UID 0 access and is a member of the wheel group (or the group of the group option), deny access. Conversely, if the user is not in the group, return PAM_IGNORE (unless trust was also specified, in which case we return PAM_SUCCESS). group=name Instead of checking the wheel or GID 0 groups, use the name group to perform the authentication. root_only The check for wheel membership is done only when the target user UID is 0. trust The pam_wheel module will return PAM_SUCCESS instead of PAM_IGNORE if the user is a member of the wheel group (thus with a little play stacking the modules the wheel members may be able to su to root without being prompted for a passwd). use_uid The check will be done against the real uid of the calling process, instead of trying to obtain the user from the login session associated with the terminal in use. EXAMPLES The root account gains access by default (rootok), only wheel members can become root (wheel) but Unix authenticate non-root applicants. su auth sufficient pam_rootok.so su auth required pam_wheel.so su auth required pam_unix.so AUTHOR pam_wheel was written by Cristian Gafton <gafton@redhat.com>.
Save
cmd:
run