/etc/pam.d

see pam

as of 9/5/15 on smackerpro

drwxr-xr-x  17 root  wheel  578 Mar  4  2014 pam.d

-r--r--r--  1 root  wheel  191 Mar  4  2014 other   aka default
# other: auth account password session
auth       required       pam_deny.so     # no log     pam_warn.so would include logging
account    required       pam_deny.so
password   required       pam_deny.so
session    required       pam_deny.so


-rw-r--r--  1 root  wheel  264 Mar  4  2014 authorization
     # authorization: auth account
     auth       optional       pam_krb5.so use_first_pass use_kcminit
     auth       optional       pam_ntlm.so use_first_pass
     auth       required       pam_opendirectory.so use_first_pass nullok
     account    required       pam_opendirectory.so
     

-rw-r--r--  1 root  wheel  181 Mar  4  2014 checkpw
    # libsecurity_checkpw: auth account
    auth       required       pam_opendirectory.so use_first_pass nullok
    account    required       pam_opendirectory.so no_check_home no_check_shell

-rw-r--r--  1 root  wheel  200 Mar  4  2014 chkpasswd
# chkpasswd: auth account
auth       required       pam_opendirectory.so
account    required       pam_opendirectory.so
password   required       pam_permit.so
session    required       pam_permit.so

-r--r--r--  1 root  wheel  203 Mar  4  2014 cups
# cups: auth account password session
auth       required       pam_opendirectory.so
account    required       pam_permit.so
password   required       pam_deny.so
session    required       pam_permit.so

-rw-r--r--  1 root  wheel  204 Mar  4  2014 ftpd
# login: auth account password session
auth       required       pam_opendirectory.so
account    required       pam_permit.so
password   required       pam_deny.so
session    required       pam_permit.so

-rw-r--r--  1 root  wheel  512 Mar  4  2014 login
# login: auth account password session
auth       optional       pam_krb5.so use_kcminit
auth       optional       pam_ntlm.so try_first_pass
auth       optional       pam_mount.so try_first_pass
auth       required       pam_opendirectory.so try_first_pass
account    required       pam_nologin.so
account    required       pam_opendirectory.so
password   required       pam_opendirectory.so
session    required       pam_launchd.so
session    required       pam_uwtmp.so
session    optional       pam_mount.so

-rw-r--r--  1 root  wheel  152 Mar  4  2014 login.term
# login: account session
account    required       pam_nologin.so
account    required       pam_opendirectory.so
session    required       pam_uwtmp.so

-rw-r--r--  1 root  wheel  197 Mar  4  2014 passwd
# passwd: auth account
auth       required       pam_permit.so
account    required       pam_opendirectory.so
password   required       pam_opendirectory.so
session    required       pam_permit.so

-r--r--r--  1 root  wheel  211 Mar  4  2014 rshd
# rshd: auth account password session
auth        required       pam_permit.so
account     required       pam_nologin.so
account     required       pam_opendirectory.so
session     required       pam_launchd.so

-rw-r--r--  1 root  wheel  408 Mar  4  2014 screensaver
# screensaver: auth account
auth       optional       pam_krb5.so use_first_pass use_kcminit
auth       required       pam_opendirectory.so use_first_pass nullok
account    required       pam_opendirectory.so
account    sufficient     pam_self.so
account    required       pam_group.so no_warn group=admin,wheel fail_safe
account    required       pam_group.so no_warn deny group=admin,wheel ruser fail_safe

-rw-r--r--  1 root  wheel  140 Mar  4  2014 smbd
# smbd: service ACL account management support
account required    pam_sacl.so sacl_service=smb allow_trustacct
session required    pam_permit.so

-r--r--r--  1 root  wheel  527 Aug 24  2013 sshd
# sshd: auth account password session
auth       optional       pam_krb5.so use_kcminit
auth       optional       pam_ntlm.so try_first_pass
auth       optional       pam_mount.so try_first_pass
auth       required       pam_opendirectory.so try_first_pass
account    required       pam_nologin.so
account    required       pam_sacl.so sacl_service=ssh
account    required       pam_opendirectory.so
password   required       pam_opendirectory.so
session    required       pam_launchd.so
session    optional       pam_mount.so

-rw-r--r--  1 root  wheel  356 Aug 24  2013 su
# su: auth account session
auth       sufficient     pam_rootok.so
auth       required       pam_opendirectory.so
account    required       pam_group.so no_warn group=admin,wheel ruser root_only fail_safe
account    required       pam_opendirectory.so no_check_shell
password   required       pam_opendirectory.so
session    required       pam_launchd.so

-r--r--r--  1 root  wheel  203 Mar  4  2014 sudo
# sudo: auth account password session
auth       required       pam_opendirectory.so
account    required       pam_permit.so
password   required       pam_deny.so
session    required       pam_permit.so

STANDARDS

X/Open Single Sign-On Service (XSSO) - Pluggable Authentication Modules, June 1997.