diff options
author | Eugeni Dodonov <eugeni@mandriva.org> | 2009-03-05 16:31:58 +0000 |
---|---|---|
committer | Eugeni Dodonov <eugeni@mandriva.org> | 2009-03-05 16:31:58 +0000 |
commit | 522c53299a1e6b1376d95cd93fae7f87b3baf20e (patch) | |
tree | b296f5105291cf6086b5f32c1f29e0ba65371b46 /src/msec/config.py | |
parent | c23b287246c21d8fedae4aa22c90ef143e88d570 (diff) | |
download | msec-522c53299a1e6b1376d95cd93fae7f87b3baf20e.tar msec-522c53299a1e6b1376d95cd93fae7f87b3baf20e.tar.gz msec-522c53299a1e6b1376d95cd93fae7f87b3baf20e.tar.bz2 msec-522c53299a1e6b1376d95cd93fae7f87b3baf20e.tar.xz msec-522c53299a1e6b1376d95cd93fae7f87b3baf20e.zip |
Added PAM plugin.
Diffstat (limited to 'src/msec/config.py')
-rw-r--r-- | src/msec/config.py | 16 |
1 files changed, 4 insertions, 12 deletions
diff --git a/src/msec/config.py b/src/msec/config.py index 7d7fd12..c79910e 100644 --- a/src/msec/config.py +++ b/src/msec/config.py @@ -98,15 +98,8 @@ SETTINGS = {'BASE_LEVEL': ("libmsec.base_level", 'ENABLE_IP_SPOOFING_PROTECTION': ("libmsec.enable_dns_spoofing_protection", ['yes', 'no']), 'ENABLE_LOG_STRANGE_PACKETS': ("libmsec.enable_log_strange_packets", ['yes', 'no']), 'ENABLE_MSEC_CRON': ("libmsec.enable_msec_cron", ['yes', 'no']), - 'ENABLE_PAM_ROOT_FROM_WHEEL': ("libmsec.enable_pam_root_from_wheel", ['yes', 'no']), 'ENABLE_SUDO': ("libmsec.enable_sudo", ['yes', 'no', 'wheel']), - 'ENABLE_PAM_WHEEL_FOR_SU': ("libmsec.enable_pam_wheel_for_su", ['yes', 'no']), 'ENABLE_SULOGIN': ("libmsec.enable_sulogin", ['yes', 'no']), - # password stuff - 'ENABLE_PASSWORD': ("libmsec.enable_password", ['yes', 'no']), - 'PASSWORD_HISTORY': ("libmsec.password_history", ['*']), - # format: min length, num upper, num digits - 'PASSWORD_LENGTH': ("libmsec.password_length", ['*']), 'SHELL_HISTORY_SIZE': ("libmsec.set_shell_history_size", ['*']), 'SHELL_TIMEOUT': ("libmsec.set_shell_timeout", ['*']), 'ENABLE_STARTUP_MSEC': ("libmsec.enable_startup_msec", ['yes', 'no']), @@ -118,11 +111,10 @@ OPTION_DISABLED=_("System default") # settings organizes by category # system security settings SETTINGS_SYSTEM = ["ENABLE_STARTUP_MSEC", "ENABLE_STARTUP_PERMS", "ENABLE_MSEC_CRON", - "ENABLE_PAM_WHEEL_FOR_SU", "ENABLE_SULOGIN", "CREATE_SERVER_LINK", "ENABLE_AT_CRONTAB", - "ALLOW_ROOT_LOGIN", "ALLOW_USER_LIST", "ENABLE_PASSWORD", "ALLOW_AUTOLOGIN", - "ENABLE_CONSOLE_LOG", "ENABLE_PAM_WHEEL_FOR_SU", "CREATE_SERVER_LINK", - "ALLOW_XAUTH_FROM_ROOT", "ALLOW_REBOOT", "SHELL_HISTORY_SIZE", "SHELL_TIMEOUT", "PASSWORD_LENGTH", - "PASSWORD_HISTORY", "USER_UMASK", "ROOT_UMASK", + "ENABLE_SULOGIN", "CREATE_SERVER_LINK", "ENABLE_AT_CRONTAB", + "ALLOW_ROOT_LOGIN", "ALLOW_USER_LIST", "ALLOW_AUTOLOGIN", + "ENABLE_CONSOLE_LOG", "CREATE_SERVER_LINK", "ALLOW_XAUTH_FROM_ROOT", + "ALLOW_REBOOT", "SHELL_HISTORY_SIZE", "SHELL_TIMEOUT", "USER_UMASK", "ROOT_UMASK", ] # network security settings SETTINGS_NETWORK = ["ACCEPT_BOGUS_ERROR_RESPONSES", "ACCEPT_BROADCASTED_ICMP_ECHO", "ACCEPT_ICMP_ECHO", |