Merge pull request #174951 from dpausp/fix-pam-tty-audit
This commit is contained in:
commit
814628a45d
1 changed files with 6 additions and 6 deletions
|
@ -615,12 +615,12 @@ let
|
||||||
optionalString cfg.setLoginUid ''
|
optionalString cfg.setLoginUid ''
|
||||||
session ${if config.boot.isContainer then "optional" else "required"} pam_loginuid.so
|
session ${if config.boot.isContainer then "optional" else "required"} pam_loginuid.so
|
||||||
'' +
|
'' +
|
||||||
optionalString cfg.ttyAudit.enable ''
|
optionalString cfg.ttyAudit.enable (concatStringsSep " \\\n " ([
|
||||||
session required ${pkgs.pam}/lib/security/pam_tty_audit.so
|
"session required ${pkgs.pam}/lib/security/pam_tty_audit.so"
|
||||||
open_only=${toString cfg.ttyAudit.openOnly}
|
] ++ optional cfg.ttyAudit.openOnly "open_only"
|
||||||
${optionalString (cfg.ttyAudit.enablePattern != null) "enable=${cfg.ttyAudit.enablePattern}"}
|
++ optional (cfg.ttyAudit.enablePattern != null) "enable=${cfg.ttyAudit.enablePattern}"
|
||||||
${optionalString (cfg.ttyAudit.disablePattern != null) "disable=${cfg.ttyAudit.disablePattern}"}
|
++ optional (cfg.ttyAudit.disablePattern != null) "disable=${cfg.ttyAudit.disablePattern}"
|
||||||
'' +
|
)) +
|
||||||
optionalString cfg.makeHomeDir ''
|
optionalString cfg.makeHomeDir ''
|
||||||
session required ${pkgs.pam}/lib/security/pam_mkhomedir.so silent skel=${config.security.pam.makeHomeDir.skelDirectory} umask=0077
|
session required ${pkgs.pam}/lib/security/pam_mkhomedir.so silent skel=${config.security.pam.makeHomeDir.skelDirectory} umask=0077
|
||||||
'' +
|
'' +
|
||||||
|
|
Loading…
Reference in a new issue