#%PAM-1.0 auth required pam_env.so auth required pam_shells.so auth sufficient pam_unix.so #auth sufficient pam_winbind.so use_first_pass auth required pam_deny.so #account sufficient pam_winbind.so account required pam_unix.so password required pam_cracklib.so retry=3 minlen=4 dcredit=2 ucredit=2 password sufficient pam_unix.so shadow md5 use_authtok password required pam_deny.so session required pam_limits.so session required pam_unix.so session required pam_mkhomedir.so session optional pam_loginuid.so session optional pam_systemd.so controllers=