view deleted_files/usr/src/pkgdefs/SUNWtnetr/postinstall.tmpl @ 3970:e0cf0f3e7aa4

5073551 krlogin, krsh, ktelnet default PAM stacks look wrong. 6533858 zones unusable in s10u4_04 due to corrupted local zone pam.conf
author mp153739
date Thu, 05 Apr 2007 02:55:03 -0700
parents usr/src/pkgdefs/SUNWtnetr/postinstall.tmpl@68f95e015346
children
line wrap: on
line source

#!/bin/sh
#
# CDDL HEADER START
#
# The contents of this file are subject to the terms of the
# Common Development and Distribution License, Version 1.0 only
# (the "License").  You may not use this file except in compliance
# with the License.
#
# You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
# or http://www.opensolaris.org/os/licensing.
# See the License for the specific language governing permissions
# and limitations under the License.
#
# When distributing Covered Code, include this CDDL HEADER in each
# file and include the License file at usr/src/OPENSOLARIS.LICENSE.
# If applicable, add the following below this CDDL HEADER, with the
# fields enclosed by brackets "[]" replaced with your own identifying
# information: Portions Copyright [yyyy] [name of copyright owner]
#
# CDDL HEADER END
#
#
# Copyright 2004 Sun Microsystems, Inc.  All rights reserved.
# Use is subject to license terms.
#
# ident	"%Z%%M%	%I%	%E% SMI"
#

include pam_install

#
# update the pam.conf file
#

pam_init

# Delete the "acceptor" option everywhere

cat $pamconfold | \
	sed "s/acceptor//g" > $pamconf
if [ $? -ne 0 ]; then
	echo "can't edit $pamconf"
	pam_undo
	exit 1
fi

pam_add "^[#	]*ktelnet[	]*auth" << EOF
#
# Kerberized telnet service
#
ktelnet		auth	binding		pam_krb5.so.1
ktelnet		auth	required	pam_unix_auth.so.1
EOF
if [ $? -ne 0 ]; then
	exit 1
fi

pam_fini