User Tools

Site Tools


accounts-and-permissions

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
accounts-and-permissions [2020/07/09 19:22]
Miroslav Bernát
accounts-and-permissions [2020/07/09 21:20] (current)
Miroslav Bernát
Line 14: Line 14:
 | **pam_tally2**\\ (implemented from RHEL 6) | prints authentication failure records of all users (data from ///​var/​log/​tallylog//​),​ **-u** <​user>​ records of the specified user, **--reset** resets the unsuccessful login attempts counter; uses pam_tally2 module\\ ''#​ pam_tally2 --reset -u jan''​ | | **pam_tally2**\\ (implemented from RHEL 6) | prints authentication failure records of all users (data from ///​var/​log/​tallylog//​),​ **-u** <​user>​ records of the specified user, **--reset** resets the unsuccessful login attempts counter; uses pam_tally2 module\\ ''#​ pam_tally2 --reset -u jan''​ |
 | **faillock**\\ (implemented from RHEL 6) | prints authentication failure records of all users (data from ///​var/​run/​faillock/​*//​),​ **--user** <​user>​ records of the specified user, **--reset** resets the unsuccessful login attempts counter; uses pam_faillock module\\ ''#​ faillock --user tom --reset''​ | | **faillock**\\ (implemented from RHEL 6) | prints authentication failure records of all users (data from ///​var/​run/​faillock/​*//​),​ **--user** <​user>​ records of the specified user, **--reset** resets the unsuccessful login attempts counter; uses pam_faillock module\\ ''#​ faillock --user tom --reset''​ |
-| **authconfig** <​options>​ | **--update** updates the PAM configuration according to the specified options (modifies the ///​etc/​pam.d/​*-ac//​ configuration files), **--test** prints the PAM configuration ​settings, **--savebackup=**<​directory>​ backs up the PAM configuration files, **--restorebackup=**<​directory>​ restores the PAM configuration files\\ ''#​ authconfig --enablefaillock --faillockargs="​deny=5 fail_interval=900 unlock_time=3600"​ --update''​\\ (enables and configures the pam_faillock module with a limit of 5 failed login attempts in a 15-minute interval and automatically unlocks locked accounts after 60 minutes) |+| **authconfig** <​options>​ | **--update** updates the PAM configuration according to the specified options (modifies the ///​etc/​pam.d/​*-ac//​ configuration files), **--test** prints the current ​PAM configuration,​ **--savebackup=**<​directory>​ backs up the PAM configuration files, **--restorebackup=**<​directory>​ restores the PAM configuration files\\ ''#​ authconfig --enablefaillock --faillockargs="​deny=5 fail_interval=900 unlock_time=3600"​ --update''​\\ (enables and configures the pam_faillock module with a limit of 5 failed login attempts in a 15-minute interval and automatically unlocks locked accounts after 60 minutes) |
 | **id** (<​user>​) | prints the UID and GID of the logged-in or specified user, including all his groups, **-u** only the effective UID, **-g** only the effective GID, **-G** GID of all user groups, **-n** with the "​-u",​ "​-g"​ or "​-G"​ option prints the user or group name instead of the numeric designation | | **id** (<​user>​) | prints the UID and GID of the logged-in or specified user, including all his groups, **-u** only the effective UID, **-g** only the effective GID, **-G** GID of all user groups, **-n** with the "​-u",​ "​-g"​ or "​-G"​ option prints the user or group name instead of the numeric designation |
 | **lid** (<​user>​) | prints the groups to which the logged-in or specified user is assigned, **-g** <​group>​ prints users in the specified group | | **lid** (<​user>​) | prints the groups to which the logged-in or specified user is assigned, **-g** <​group>​ prints users in the specified group |