#%PAM-1.0

auth       required	pam_listfile.so item=user sense=deny file=/etc/ftpusers onerr=succeed
#auth       required	pam_unix.so shadow nullok

# If this is enabled, anonymous logins will fail because the 'ftp' user does
# not have a "valid" shell, as listed in /etc/shells.
#
# If you enable this, it is recommended that you do *not* give the 'ftp'
# user a real shell. Instead, give the 'ftp' user /bin/false for a shell and
# add /bin/false to /etc/shells.
#
#auth       required	pam_shells.so

auth     required       pam_unix2.so
auth     required       pam_shells.so
account  required       pam_unix2.so
password required       pam_unix2.so
session  required       pam_unix2.so
session  optional       pam_keyinit.so revoke
