These are the same configuration in MacOSX's default service definition
for sudo.
LDFLAGS+= -lpam
include bsd.prog.mk
LDFLAGS+= -lpam
include bsd.prog.mk
+
+/etc/pam.d/doas: pam.d__doas
+ cp $< $@
+install: /etc/pam.d/doas
-#define PAM_SERVICE "sudo"
+#define PAM_SERVICE "doas"
#define __UNUSED __attribute__ ((unused))
#define __UNUSED __attribute__ ((unused))
--- /dev/null
+# sudo: auth account password session
+auth required pam_opendirectory.so
+account required pam_permit.so
+password required pam_deny.so
+session required pam_permit.so