#%PAM-1.0 auth required pam_env.so auth sufficient pam_unix.so nullok use_ldap auth required pam_deny.so account required pam_unix.so password required pam_cracklib.so retry=3 minlen=4 dcredit=2 ucredit=2 password sufficient pam_unix.so shadow md5 use_authtok password required pam_deny.so session required pam_limits.so session required pam_unix.so session required pam_mkhomedir.so session optional pam_loginuid.so session optional pam_systemd.so controllers=