Man page - pam_nologin(8)
Packages contains this manual
- pam_wheel(8)
- sepermit.conf(5)
- pwhistory_helper(8)
- pam_selinux(8)
- pam_mkhomedir(8)
- pam_xauth(8)
- time.conf(5)
- pam_permit(8)
- pam_filter(8)
- pam_canonicalize_user(8)
- pam_usertype(8)
- pam_rhosts(8)
- pam_faildelay(8)
- unix_chkpwd(8)
- pwhistory.conf(5)
- pam_localuser(8)
- pam_mail(8)
- pam_deny(8)
- pam_keyinit(8)
- pam_userdb(8)
- pam_limits(8)
- pam_group(8)
- pam_rootok(8)
- pam_time(8)
- pam_sepermit(8)
- pam_access(8)
- pam_listfile(8)
- pam_warn(8)
- access.conf(5)
- pam_nologin(8)
- pam_tty_audit(8)
- pam_stress(8)
- pam_echo(8)
- pam_pwhistory(8)
- pam_ftp(8)
- pam_debug(8)
- environment(5)
- faillock(8)
- pam.d(5)
- pam_exec(8)
- pam_securetty(8)
- pam_faillock(8)
- pam_env(8)
- pam_timestamp_check(8)
- group.conf(5)
- pam_env.conf(5)
- pam_motd(8)
- mkhomedir_helper(8)
- pam_setquota(8)
- unix_update(8)
- pam.conf(5)
- pam_issue(8)
- pam_namespace(8)
- pam_shells(8)
- pam_umask(8)
- pam_unix(8)
- pam(7)
- namespace.conf(5)
- pam_timestamp(8)
- faillock.conf(5)
- pam_getenv(8)
- pam-auth-update(8)
- pam_succeed_if(8)
- pam_namespace_helper(8)
- limits.conf(5)
- pam_loginuid(8)
apt-get install libpam-runtime
Manual
PAM_NOLOGIN
NAMESYNOPSIS
DESCRIPTION
OPTIONS
MODULE TYPES PROVIDED
RETURN VALUES
EXAMPLES
NOTES
SEE ALSO
AUTHOR
NAME
pam_nologin - Prevent non-root users from login
SYNOPSIS
|
pam_nologin.so [file= /path/nologin ] [successok] |
DESCRIPTION
pam_nologin is a PAM module that prevents users from logging into the system when /var/run/nologin or /etc/nologin exists. The contents of the file are displayed to the user. The pam_nologin module has no effect on the root user's ability to log in.
OPTIONS
file=/path/nologin
Use this file instead the default /var/run/nologin or /etc/nologin.
successok
Return PAM_SUCCESS if no file exists, the default is PAM_IGNORE.
MODULE TYPES PROVIDED
The auth and account module types are provided.
RETURN VALUES
PAM_AUTH_ERR
The user is not root and /etc/nologin exists, so the user is not permitted to log in.
PAM_BUF_ERR
Memory buffer error.
PAM_IGNORE
This is the default return value.
PAM_SUCCESS
Success: either the user is root or the nologin file does not exist.
PAM_USER_UNKNOWN
User not known to the underlying authentication module.
EXAMPLES
The suggested usage for /etc/pam.d/login is:
auth required pam_nologin.so
NOTES
In order to make this module effective, all login methods should be secured by it. It should be used as a required method listed before any sufficient methods in order to get standard Unix nologin semantics. Note, the use of successok module argument causes the module to return PAM_SUCCESS and as such would break such a configuration - failing sufficient modules would lead to a successful login because the nologin module succeeded .
SEE ALSO
nologin (5), pam.conf (5), pam.d (5), pam (7)
AUTHOR
pam_nologin was written by Michael K. Johnson <johnsonm@redhat.com>.