Commit message (Collapse) | Author | Age | Files | Lines | |
---|---|---|---|---|---|
* | we do not use mdns on servers, so remove it as it seems to cause trouble | Michael Scherer | 2011-05-24 | 1 | -1/+1 |
| | | | | | on mandriva 2010.0, as used on gandi vm | ||||
* | - allow to set access without forcing the restricted shell ( should | Michael Scherer | 2011-01-13 | 1 | -1/+1 |
| | | | | be done by openssh in fact, but that's easier to do like this for now ) | ||||
* | allow to use multiple group for the access with pam | Michael Scherer | 2011-01-13 | 1 | -6/+6 |
| | |||||
* | restrict login to people of the group mga-commiters ( previous try was | Michael Scherer | 2010-11-24 | 1 | -6/+6 |
| | | | | not working with ssh key ) | ||||
* | s/commiters/committers/, to be in sync with the ldap group name and the ↵ | Michael Scherer | 2010-11-24 | 1 | -2/+2 |
| | | | | dictionnary | ||||
* | move the group restriction at the top of the file, or they are useless | Michael Scherer | 2010-11-24 | 1 | -7/+7 |
| | |||||
* | pam_wheel is made to be used with su only. pam_succeed_if seems to be the ↵ | Michael Scherer | 2010-11-24 | 1 | -2/+2 |
| | | | | proper module | ||||
* | remove empty line from the result file ( <% vs <%- ) | Michael Scherer | 2010-11-24 | 1 | -4/+4 |
| | |||||
* | Add timelimits for nss_ldap, enable password policy | Buchan Milne | 2010-11-22 | 1 | -1/+3 |
| | |||||
* | - use the rootbinddn as preconized by buchan ( and let all access goes | Michael Scherer | 2010-11-22 | 1 | -2/+2 |
| | | | | through nscd ) | ||||
* | - use the first pass if proposed ( or pam ask the password 2 times ) | Michael Scherer | 2010-11-22 | 1 | -1/+1 |
| | |||||
* | - add nssldap password handling | Michael Scherer | 2010-11-22 | 1 | -1/+2 |
| | |||||
* | - ldaps is required ( ie no unencrypted connection ) | Michael Scherer | 2010-11-22 | 1 | -1/+1 |
| | |||||
* | - do not let file with passwords to be world readable | Michael Scherer | 2010-11-20 | 1 | -3/+0 |
| | | | | | | | | ( even if being readable by apache is not good either, but needed as the password is used by apache ) - use ldaps for sympa - use the 2 new facter macro and remove the version copied everywhere - remove hardcoded domain in bugzilla and others | ||||
* | - fix templates ( again ) | Michael Scherer | 2010-11-17 | 1 | -0/+22 |
| | | | | | - add ldap.conf | ||||
* | - fix templates | Michael Scherer | 2010-11-17 | 1 | -0/+16 |
| | | | | | - add nsswitch.conf | ||||
* | - add a proto module for taking care of pam ( need pam_ldap, etc support, ↵ | Michael Scherer | 2010-11-17 | 1 | -0/+35 |
and a review of the pam config file too ) |