Skip to content

[Feature] Addl. CIS hardeningΒ #434

Description

@surreal70

Got an idea? Nice! πŸ’‘ We love hearing what features would make PegaProx better for you.

A friendly reminder: PegaProx is built by volunteers in our spare time. We can't promise timelines or guarantee every feature will be implemented β€” but every suggestion helps shape the roadmap!

Want to help move things faster?

  • πŸ’– Become a Sponsor β€” sponsored features get prioritized
  • ⭐ Star the project β€” helps with visibility
  • 🀝 Even better: submit a PR with your idea!

Describe the feature

per default in /etc/pam.d/common-auth has the following entry:

' ' '
auth [success=1 default=ignore] pam_unix.so nullok
' ' '

T improve security, remove the "nullok" token

Use Case

Improve security and CIS compliance CIS 5.3.3.4.1

Alternatives considered

config manually

How important is this for you?

nice to have

Checklist

  • [ yes] I have searched existing issues and discussions to make sure this hasn't been requested before

Testet on varuous Poroxmox...VE8, VE9 and PBS 4

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions