#%PAM-1.0
auth        required      /lib64/security/pam_env.so
auth        sufficient    /lib64/security/pam_krb5.so use_first_pass tokens use_shmem use_opt_hwauth
auth        required      /lib64/security/pam_deny.so

account    required     pam_stack.so service=system-auth
password   required     pam_stack.so service=system-auth

session    optional      /lib64/security/pam_krb5.so use_shmem external 
session    required      /lib64/security/pam_limits.so
session    required      /lib64/security/pam_unix.so
