#%PAM-1.0 auth sufficient pam_rootok.so # Uncomment the following line to implicitly trust users in the "wheel" group. #auth sufficient pam_wheel.so trust use_uid # Uncomment the following line to require a user to be in the "wheel" group. #auth required pam_wheel.so use_uid auth sufficient pam_ldap.so auth required pam_unix.so account required pam_unix.so session required pam_exec.so seteuid log=/tmp/pamexec.log /usr/local/bin/first-login session required pam_unix.so