maybe chgrp ldap './openldap/ssl/ldap.pem'
maybe chmod 0400 './openldap/ssl/ldap.pem'
maybe chmod 0755 './pam.d'
+maybe chmod 0644 './pam.d/._cfg0000_system-login'
maybe chmod 0644 './pam.d/atd'
maybe chmod 0644 './pam.d/chage'
maybe chmod 0644 './pam.d/chfn'
--- /dev/null
+auth required pam_tally2.so onerr=succeed
+auth required pam_shells.so
+auth required pam_nologin.so
+auth include system-auth
+auth optional pam_gnome_keyring.so
+
+account required pam_access.so
+account required pam_nologin.so
+account include system-auth
+account required pam_tally2.so onerr=succeed
+
+password include system-auth
+password optional pam_gnome_keyring.so
+
+session optional pam_loginuid.so
+session required pam_env.so
+session optional pam_lastlog.so
+session include system-auth
+session optional pam_gnome_keyring.so auto_start
+session optional pam_motd.so motd=/etc/motd
+session optional pam_mail.so
+