Description of problem: When attempting to prohibit e.g. logins with a supplied uppercase user name, this won't work with users coming out of ADS because winbindd (via nss_winbind) converts the supplied user name to lower case. Version-Release number of selected component (if applicable): pam-1.0.2-2.fc10 How reproducible: Reproducible Steps to Reproduce: 1. have a user in ADS, integrated via winbind 2. auth sufficient user !~ [*[A-Z\]*] 3. Try to login via ssh, supplying at least one capital character in the user name Actual results: Logging in works, "user ... met requirement" in the log Expected results: Logging in doesn't work Additional info: