summaryrefslogtreecommitdiff
path: root/sysconf
diff options
context:
space:
mode:
Diffstat (limited to 'sysconf')
-rw-r--r--sysconf/level2
-rw-r--r--sysconf/pam-radius12
-rw-r--r--sysconf/pam_radius.cfg11
-rw-r--r--sysconf/protected-user2
4 files changed, 15 insertions, 12 deletions
diff --git a/sysconf/level b/sysconf/level
new file mode 100644
index 00000000..9da13bf5
--- /dev/null
+++ b/sysconf/level
@@ -0,0 +1,2 @@
+admin:quaggavty,vyattacfg,sudo,adm,dip,disk
+operator:quaggavty,vyattaop,operator,adm,dip
diff --git a/sysconf/pam-radius b/sysconf/pam-radius
deleted file mode 100644
index 0409dd44..00000000
--- a/sysconf/pam-radius
+++ /dev/null
@@ -1,12 +0,0 @@
-Name: Radius authentication
-Default: no
-Priority: 512
-Auth-Type: Primary
-Auth:
- [success=end default=ignore] pam_radius_auth.so try_first_pass
-Auth-Initial:
- [success=end default=ignore] pam_radius_auth.so
-Account-Type: Primary
-Account:
- [success=end new_authtok_reqd=done default=ignore] pam_radius_auth.so try_first_pass
-
diff --git a/sysconf/pam_radius.cfg b/sysconf/pam_radius.cfg
new file mode 100644
index 00000000..02ffc1c8
--- /dev/null
+++ b/sysconf/pam_radius.cfg
@@ -0,0 +1,11 @@
+Name: Radius client
+Default: yes
+Priority: 512
+Auth-Type: Primary
+Auth:
+ sufficient pam_radius_auth.so try_first_pass
+Auth-Initial:
+ sufficient pam_radius_auth.so
+Account-Type: Primary
+Account:
+ sufficient pam_radius_auth.so
diff --git a/sysconf/protected-user b/sysconf/protected-user
new file mode 100644
index 00000000..04a60974
--- /dev/null
+++ b/sysconf/protected-user
@@ -0,0 +1,2 @@
+root
+www-data