File tree 1 file changed +23
-0
lines changed
files/common/var/lib/delphix-platform/ansible/10-delphix-platform/roles/delphix-platform/tasks
1 file changed +23
-0
lines changed Original file line number Diff line number Diff line change 336
336
regexp : ' ^#?[\s]*(auth[\s]+required[\s]+pam_wheel\.so.*)$'
337
337
replace : ' \1'
338
338
339
+ #
340
+ #
341
+ # Lock out the user after an unsuccessful consecutive login attempts.
342
+ #
343
+ - lineinfile :
344
+ path : /etc/pam.d/common-auth
345
+ line : " {{ item }}"
346
+ insertbefore : ' ^auth\s+\[success=1\s+default=ignore\]\s+pam_unix\.so\s+nullok\s+try_first_pass'
347
+ with_items :
348
+ - ' auth required pam_tally2.so audit silent deny=5 unlock_time=900'
349
+
350
+ #
351
+ #
352
+ # Configuration to enforce account lockout policies.
353
+ #
354
+ - lineinfile :
355
+ path : /etc/pam.d/common-account
356
+ line : " {{ item }}"
357
+ insertafter : EOF
358
+ with_items :
359
+ - ' account required pam_tally2.so'
360
+
361
+ #
339
362
#
340
363
# Enable SNMP client tools to load MIBs by default.
341
364
#
You can’t perform that action at this time.
0 commit comments