# Default was:
#account required pam_unix.so
#
-# LDAP config copied from http://wiki.debian.org/LDAP/PAM
-account required pam_unix.so
-account sufficient pam_succeed_if.so uid < 1000 quiet
-account [default=bad success=ok user_unknown=ignore] pam_ldap.so
-account required pam_permit.so
-
+# LDAP config based on from http://wiki.debian.org/LDAP/PAM
+account sufficient pam_ldap.so
+account required pam_unix.so
# Default was:
# auth required pam_unix.so nullok_secure
#
-# LDAP config copied from http://wiki.debian.org/LDAP/PAM
+# LDAP config based on from http://wiki.debian.org/LDAP/PAM
auth sufficient pam_unix.so nullok_secure
-auth requisite pam_succeed_if.so uid >= 1000 quiet
auth sufficient pam_ldap.so use_first_pass
auth required pam_deny.so
# Default was:
# password required pam_unix.so nullok obscure md5
#
-# LDAP config copied from http://wiki.debian.org/LDAP/PAM, but with use_authtok
+# LDAP config based on from http://wiki.debian.org/LDAP/PAM, but with use_authtok
# options removed.
-password sufficient pam_unix.so md5 obscure min=4 max=8 nullok try_first_pass
+password sufficient pam_unix.so nullok obscure md5
password sufficient pam_ldap.so
password required pam_deny.so
#
# session required pam_unix.so
-# LDAP config copied from http://wiki.debian.org/LDAP/PAM
+# LDAP config based on from http://wiki.debian.org/LDAP/PAM
session required pam_limits.so
session required pam_unix.so
session optional pam_ldap.so