ssorce af8bfa3
#
ssorce af8bfa3
# pam_winbind configuration file
ssorce af8bfa3
#
ssorce af8bfa3
# /etc/security/pam_winbind.conf
ssorce af8bfa3
#
ssorce af8bfa3
ssorce af8bfa3
[global]
ssorce af8bfa3
ssorce af8bfa3
# turn on debugging
8b703a1
;debug = no
8b703a1
8b703a1
# turn on extended PAM state debugging
8b703a1
;debug_state = no
ssorce af8bfa3
ssorce af8bfa3
# request a cached login if possible
ssorce af8bfa3
# (needs "winbind offline logon = yes" in smb.conf)
8b703a1
;cached_login = no
ssorce af8bfa3
ssorce af8bfa3
# authenticate using kerberos
8b703a1
;krb5_auth = no
ssorce af8bfa3
ssorce af8bfa3
# when using kerberos, request a "FILE" krb5 credential cache type
ssorce af8bfa3
# (leave empty to just do krb5 authentication but not have a ticket
ssorce af8bfa3
# afterwards)
8b703a1
;krb5_ccache_type =
ssorce af8bfa3
ssorce af8bfa3
# make successful authentication dependend on membership of one SID
ssorce af8bfa3
# (can also take a name)
ssorce af8bfa3
;require_membership_of =
8b703a1
8b703a1
# password expiry warning period in days
8b703a1
;warn_pwd_expire = 14
8b703a1
8b703a1
# omit pam conversations
8b703a1
;silent = no
8b703a1
8b703a1
# create homedirectory on the fly
8b703a1
;mkhomedir = no