Red Hat Bugzilla – Bug 1273373
Require the option "unlock_time=never" with pam_faillock.so module.
Last modified: 2016-12-14 13:56:59 EST
Description of problem:
The global option "unlock_time" available with "pam_faillock" module does not have an option to lock a user account until it's unlocked by admin.
Version-Release number of selected component (if applicable):
The current Fedora rawhide version of pam_faillock has this feature "unlock_time=never" but the RHEL-7 package does not. Hence opening a Bug to backport the feature to RHEL-7.
*** Bug 1148042 has been marked as a duplicate of this bug. ***
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.