Skip to content

Are profile_pam_access::deny_rules position settings correct? #5

Open
@billglick

Description

@billglick

I just flipped a user from profile_pam_access::allow_rules to profile_pam_access::deny_rules. The new deny rule was after the pre-existing allow rule, which defeats the purpose.

'position' => 'after',

I definitely do not understand pam_access position parameters, but it seems weird/odd to have deny rules always be the last in the access.conf file.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions