Web找到包含pam_pwquality.so模块的行,将原有行注释并修改为如下的新配置,密码长度最少12位,至少包含一个大写字母,一个小写字母,一个数字,一个特殊符号。 ... password requisite pam_pwquality.so try_first_pass local_users_only retry=3 authtok_type= minlen=12 lcredit=-1 ucredit=-1 dcredit ... Web[pam.d]# more system-auth-ac # %PAM-1.0 # This file is auto-generated. # User changes will be destroyed the next time authconfig is run. auth required pam_env.so auth required pam_faildelay.so delay = 2000000 auth sufficient pam_unix.so nullok try_first_pass auth requisite pam_succeed_if.so uid >= 500 quiet_success auth required pam_deny.so …
pam_pwquality: PAM module to perform password quality …
Web3 Apr 2024 · password requisite pam_pwquality.so retry=3 向该行添加以下属性. minlen=12 maxrepeat=3 ucredit=-1 lcredit=-1 dcredit=-1 ocredit=-1 difok=4 reject_username enforce_for_root 整行代码应该如图所示. 让我们来具体说明这些指令的含义: retry=3: 退出并返回错误之前提示用户 3 次 Web11 Apr 2024 · files:passwd #%PAM-1.0 auth include system-auth account include system-auth password substack system-auth -password optional pam_gnome_keyring.so use_authtok password substack postlogin password-auth #%PAM-1.0 # This file is auto-generated. # User changes will be destroyed the next time authconfig is run. auth required … gordys home nope scene
5.3.1 Ensure password creation requirements are configured - p...
WebAdd a comment tag (#) before the pam_cracklib.so and pam_pwquality.so line in the system-auth configuration file to comment out the line. Remove use_authtok parameter from this line: password sufficient pam_unix.so try_first_pass use_authtok nullok sha512 shadow use_authtok WebFollow the steps below to set this restriction on passwords. 1. Modify the file /etc/pam.d/system-auth such that it includes the pam module pam_pwhistory after the first occurrence of the password requisite line : # cat /etc/pam.d/system-auth #%PAM-1.0 # This file is auto-generated. # User changes will be destroyed the next time authconfig is ... WebI just removed option obscure and added minlen=1 and now I'm happy. So now I have this line in /etc/pam.d/common-password: password [success=1 default=ignore] pam_unix.so minlen=1 sha512 and I can set any password. I decided to keep this post for people who might need this solution also. chick fil a one catering