allow fingerprint login on tty
This commit is contained in:
parent
20f1ca70fa
commit
d480efd55c
|
@ -12,7 +12,7 @@ in {
|
||||||
|
|
||||||
security.pam.services = {
|
security.pam.services = {
|
||||||
sudo.fprintAuth = true;
|
sudo.fprintAuth = true;
|
||||||
login.fprintAuth = false;
|
login.fprintAuth = true;
|
||||||
|
|
||||||
gdm-fingerprint = mkIf (config.services.xserver.displayManager.gdm.enable) {
|
gdm-fingerprint = mkIf (config.services.xserver.displayManager.gdm.enable) {
|
||||||
text = ''
|
text = ''
|
||||||
|
@ -23,12 +23,14 @@ in {
|
||||||
auth optional pam_permit.so
|
auth optional pam_permit.so
|
||||||
auth required pam_env.so
|
auth required pam_env.so
|
||||||
auth [success=ok default=1] ${pkgs.gnome.gdm}/lib/security/pam_gdm.so
|
auth [success=ok default=1] ${pkgs.gnome.gdm}/lib/security/pam_gdm.so
|
||||||
|
auth optional ${pkgs.gnome.gnome-keyring}/lib/security/pam_gnome_keyring.so
|
||||||
|
|
||||||
account include login
|
account include login
|
||||||
|
|
||||||
password required pam_deny.so
|
password required pam_deny.so
|
||||||
|
|
||||||
session include login
|
session include login
|
||||||
|
session optional ${pkgs.gnome.gnome-keyring}/lib/security/pam_gnome_keyring.so auto_start
|
||||||
'';
|
'';
|
||||||
};
|
};
|
||||||
};
|
};
|
||||||
|
|
Loading…
Reference in a new issue