aboutsummaryrefslogtreecommitdiff
path: root/debian/patches-applied/nullok_secure-compat.patch
diff options
context:
space:
mode:
authorSteve Langasek <vorlon@debian.org>2021-12-06 11:11:31 -0800
committerSteve Langasek <vorlon@debian.org>2021-12-06 11:11:31 -0800
commita3d540fc9aab544f53eb4d2035454a12820bd02d (patch)
treec0ff911dfb5b5d5e719c747165c526681420cb79 /debian/patches-applied/nullok_secure-compat.patch
parentea04efa24985743014da9dd22c0581cbaef82ede (diff)
parent17efd306e797a3fe46564896de31583c2c99f338 (diff)
downloadpam-a3d540fc9aab544f53eb4d2035454a12820bd02d.tar.gz
pam-a3d540fc9aab544f53eb4d2035454a12820bd02d.tar.bz2
pam-a3d540fc9aab544f53eb4d2035454a12820bd02d.zip
pam (1.4.0-11) unstable; urgency=medium
* Whitespace fixes in debconf templates. [ Sergio Durigan Junior ] * d/p/pam_env-allow-environment-files-without-EOL-at-EOF.patch: Allow /etc/environment files without EOL at EOF. In other words, allow files without a newline at the end. (LP: #1953201) [dgit import unpatched pam 1.4.0-11]
Diffstat (limited to 'debian/patches-applied/nullok_secure-compat.patch')
-rw-r--r--debian/patches-applied/nullok_secure-compat.patch27
1 files changed, 27 insertions, 0 deletions
diff --git a/debian/patches-applied/nullok_secure-compat.patch b/debian/patches-applied/nullok_secure-compat.patch
new file mode 100644
index 00000000..d85aa9fe
--- /dev/null
+++ b/debian/patches-applied/nullok_secure-compat.patch
@@ -0,0 +1,27 @@
+Description: Support nullok_secure as a deprecated alias for nullok
+Author: Steve Langasek <vorlon@debian.org>
+Last-Update: 2020-08-11
+
+Index: pam/modules/pam_unix/support.h
+===================================================================
+--- pam.orig/modules/pam_unix/support.h
++++ pam/modules/pam_unix/support.h
+@@ -102,8 +102,9 @@
+ #define UNIX_YESCRYPT_PASS 32 /* new password hashes will use yescrypt */
+ #define UNIX_NULLRESETOK 33 /* allow empty password if password reset is enforced */
+ #define UNIX_OBSCURE_CHECKS 34 /* enable obscure checks on passwords */
++#define UNIX_NULLOK_SECURE 35 /* deprecated alias for nullok */
+ /* -------------- */
+-#define UNIX_CTRLS_ 35 /* number of ctrl arguments defined */
++#define UNIX_CTRLS_ 36 /* number of ctrl arguments defined */
+
+ #define UNIX_DES_CRYPT(ctrl) (off(UNIX_MD5_PASS,ctrl)&&off(UNIX_BIGCRYPT,ctrl)&&off(UNIX_SHA256_PASS,ctrl)&&off(UNIX_SHA512_PASS,ctrl)&&off(UNIX_BLOWFISH_PASS,ctrl)&&off(UNIX_GOST_YESCRYPT_PASS,ctrl)&&off(UNIX_YESCRYPT_PASS,ctrl))
+
+@@ -147,6 +148,7 @@
+ /* UNIX_YESCRYPT_PASS */ {"yescrypt", _ALL_ON_^(0x6EC22000ULL), 0x40000000, 1},
+ /* UNIX_NULLRESETOK */ {"nullresetok", _ALL_ON_, 0x80000000, 0},
+ /* UNIX_OBSCURE_CHECKS */ {"obscure", _ALL_ON_, 0x100000000, 0},
++/* UNIX_NULLOK_SECURE */ {"nullok_secure", _ALL_ON_^(0x200ULL), 0, 0},
+ };
+
+ #define UNIX_DEFAULTS (unix_args[UNIX__NONULL].flag)