From 7c4c7420ea7a40a00ac30a5428da0a774dade171 Mon Sep 17 00:00:00 2001 From: donoban <donoban@riseup.net> Date: Sun, 15 Aug 2021 14:46:45 +0200 Subject: [PATCH] community/autologin: change pam_permit to pam_rootok Since generally it is started by root, it seems a safer policy. pam_permit.so is pretty unsafe, better avoid it if possible. --- community/autologin/APKBUILD | 4 ++-- community/autologin/autologin.pamd | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/community/autologin/APKBUILD b/community/autologin/APKBUILD index 445e5a5c05c8..016ed75d6861 100644 --- a/community/autologin/APKBUILD +++ b/community/autologin/APKBUILD @@ -2,7 +2,7 @@ # Contributor: Oliver Smith <ollieparanoid@postmarketos.org> pkgname=autologin pkgver=1.0.0 -pkgrel=1 +pkgrel=2 pkgdesc="Daemon for automatic login on TTY" url="https://git.sr.ht/~kennylevinsen/autologin" arch="all" @@ -25,5 +25,5 @@ package() { sha512sums=" b2714c1f9385228d8f4a8e68a4abdfcbab0877a4334be609bb70e0aabb280d6d9885ab8d0881eb24085693a0048e51c5b9a98e5118835a74edb3ebbf745561b4 autologin-1.0.0.tar.gz -e4e90afed8a129f7fa32db7b6dbf72272a6fad43d6bf17bb5ea9767160a4f890f7d160b0365dd66148ea91baa9a98b2b2ec5bc2ae246fcb8191881bdd4677182 autologin.pamd +c3d241f9cdb8ff7510f72f1c20126a39678dd16a28dbd5a57de674b04e46b80e552168081467d277c715bc23907fbb4626423e4b4697d4ae2afae4142b08a929 autologin.pamd " diff --git a/community/autologin/autologin.pamd b/community/autologin/autologin.pamd index f02bf5ed267f..2b9bcb2002e6 100644 --- a/community/autologin/autologin.pamd +++ b/community/autologin/autologin.pamd @@ -7,7 +7,7 @@ auth required pam_nologin.so auth required pam_env.so # Allow access without authentication -auth required pam_permit.so +auth required pam_rootok.so # Stop autologin if account requires action account required pam_unix.so -- GitLab