Commit Graph

438 Commits

Author SHA1 Message Date
Tomas Mraz e1caf9a021 make cracklib-dicts dependency weak (#1323172) 2016-04-11 13:27:13 +02:00
Tomas Mraz 492bcabc07 do not drop PAM_OLDAUTHTOK if mismatched - can be used by further modules 2016-04-06 14:37:35 +02:00
Tomas Mraz ef5646f9ed pam_unix: use pam_get_authtok() and improve prompting 2016-04-04 18:54:12 +02:00
Tomas Mraz 89812cadd9 fix console device name in console.handlers (#1270224) 2016-02-05 17:50:26 +01:00
Fedora Release Engineering 6aff3ecdef - Rebuilt for https://fedoraproject.org/wiki/Fedora_24_Mass_Rebuild 2016-02-04 11:51:15 +00:00
Tomas Mraz d55e35278c pam_faillock: add possibility to set unlock_time to never 2015-10-16 15:31:12 +02:00
Tomas Mraz 6818550d2a drop the nproc limit setting, it is causing more harm than it solves 2015-08-12 17:27:54 +02:00
Tomas Mraz 364259c23f Move autoreconf call to %prep 2015-07-15 12:03:10 +02:00
Tomas Mraz 230a2ffa1f Fix changelog date. 2015-06-26 13:57:56 +02:00
Tomas Mraz aef85b12f8 new upstream release fixing security issue with unlimited password length 2015-06-26 13:56:40 +02:00
Dennis Gilmore a12c25884e - Rebuilt for https://fedoraproject.org/wiki/Fedora_23_Mass_Rebuild 2015-06-18 00:38:08 +00:00
Tomas Mraz 6ccbfce566 Minor security and bugfix updates
- fix CVE-2014-2583: potential path traversal issue in pam_timestamp
- fix CVE-2013-7041: use case sensitive comparison in pam_userdb
- be tolerant to corrupted opasswd file
2015-05-15 16:39:21 +02:00
Tomas Mraz 1634393187 use USER_MGMT type for auditing in the pam_tally2 and faillock apps
(#1151576)
2014-10-17 12:10:57 +02:00
Tomas Mraz 757d3aed85 Multiple fixes.
- update the audit-grantor patch with the upstream changes
- pam_userdb: correct the example in man page (#1078784)
- pam_limits: check whether the utmp login entry is valid (#1080023)
- pam_console_apply: do not print error if console.perms.d is empty
- pam_limits: nofile refers to open file descriptors (#1111220)
- apply PIE and full RELRO to all binaries built
2014-09-11 09:28:59 +02:00
Peter Robinson 5c62799319 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_22_Mass_Rebuild 2014-08-17 14:36:02 +00:00
Tomas Mraz b378efa913 Merge branch 'master' into f21
Conflicts:
	pam.spec
2014-08-13 17:39:27 +02:00
Tomas Mraz 140efce0ea More pam_faillock updates. 2014-08-13 16:03:00 +02:00
Tomas Mraz b582f50a36 audit the module names that granted access
- pam_faillock: update to latest version
2014-08-13 15:35:49 +02:00
Tom Callaway 92b5ac2869 fix license handling 2014-07-30 10:54:36 -04:00
Tom Callaway e3a692cb19 fix license handling 2014-07-30 10:54:10 -04:00
Tomas Mraz e157a48461 be tolerant to corrupted opasswd file 2014-07-17 16:52:34 +02:00
Dennis Gilmore c0eb6fdc51 - Rebuilt for https://fedoraproject.org/wiki/Fedora_21_Mass_Rebuild 2014-06-06 18:29:57 -05:00
Tomas Mraz 1368ecb1ca pam_loginuid: make it return PAM_IGNORE in containers 2014-05-22 11:49:12 +02:00
Tomas Mraz 9b30e30268 fix CVE-2014-2583: potential path traversal issue in pam_timestamp 2014-03-31 16:22:42 +02:00
Tomas Mraz 0cfc638648 pam_pwhistory: call the helper if SELinux enabled 2014-03-26 18:28:16 +01:00
Tomas Mraz 8f1046a25f fix CVE-2013-7041: use case sensitive comparison in pam_userdb 2014-03-11 10:16:58 +01:00
Tomas Mraz ad164ea74b fix CVE-2013-7041: use case sensitive comparison in pam_userdb 2014-03-11 10:09:42 +01:00
Tomas Mraz 753a37644c Correct release number in changelog. 2014-03-11 09:22:14 +01:00
Tomas Mraz a8776b00dc Forgotten rename. 2014-03-10 15:56:04 +01:00
Tomas Mraz 82f97fb404 rename the 90-nproc.conf to 20-nproc.conf (#1071618)
- canonicalize user name in pam_selinux (#1071010)
- refresh the pam-redhat tarball
2014-03-10 15:36:16 +01:00
Tomas Mraz 919ce1131e raise the default soft nproc limit to 4096 2013-12-16 10:57:03 +01:00
Tomas Mraz 8d25417f36 updated translations 2013-12-02 15:49:00 +01:00
Tomas Mraz a777feba72 updated translations 2013-12-02 14:52:15 +01:00
Tomas Mraz c1fad502fd update lastlog with pam_lastlog also for su (#1021108) 2013-10-21 19:20:38 +02:00
Tomas Mraz 8695a3679b Fix compiler warnings. 2013-10-14 17:36:01 +02:00
Tomas Mraz b99d0d5268 new upstream release
- pam_tty_audit: allow the module to work with old kernels
2013-10-14 14:51:50 +02:00
Tomas Mraz b5054fab06 pam_tty_audit: proper initialization of the tty_audit_status struct
Related: rhbz#966166
2013-10-04 14:58:12 +02:00
Tomas Mraz 6ffceb7ea0 add "local_users_only" to pam_pwquality in default configuration 2013-09-30 11:39:27 +02:00
Tomas Mraz 1043bef60a One more bug in pam_unix preventing it to work properly. 2013-09-13 14:45:11 +02:00
Tomas Mraz 83d65b99e2 Add back incorrectly removed source. 2013-09-13 14:37:38 +02:00
Tomas Mraz 27d141fac2 new upstream release 2013-09-13 14:27:26 +02:00
Tomas Mraz 384fedfade new upstream release 2013-09-13 14:26:54 +02:00
Tomas Mraz c8a6aadf10 use links instead of w3m to create txt documentation
- recognize login session in pam_sepermit to prevent gdm from locking (#969174)
- add support for disabling password logging in pam_tty_audit
2013-08-07 18:24:04 +02:00
Dennis Gilmore aeefedee72 - Rebuilt for https://fedoraproject.org/wiki/Fedora_20_Mass_Rebuild 2013-08-03 11:22:22 -05:00
Tomas Mraz 58c0255c92 add new helper for pam_pwhistory 2013-07-11 14:19:26 +02:00
Tomas Mraz db8cd4099a add auditing of SELinux policy violation in pam_rootok (#965723)
- add SELinux helper to pam_pwhistory
2013-07-11 14:02:52 +02:00
Tomas Mraz 1916f77e5c the default isadir is more correct 2013-05-07 15:42:29 +02:00
Tomas Mraz 443cfad289 the default isadir is more correct 2013-05-07 14:12:43 +02:00
Tomas Mraz 01ca858789 pam_unix: do not fail with bad ld.so.preload 2013-04-24 17:46:23 +02:00
Tomas Mraz bc16a79c57 pam_unix: do not fail with bad ld.so.preload 2013-04-23 17:19:31 +02:00