#%PAM-1.0
# system-auth

auth        required   pam_faillock.so   preauth deny=6 unlock_time=900
auth        [success=1 default=bad] pam_unix.so   try_first_pass nullok
auth        [default=die] pam_faillock.so   authfail deny=6 unlock_time=900

account     required   pam_unix.so

password    required   pam_unix.so   try_first_pass nullok shadow

session     required   pam_limits.so
-session     optional   pam_systemd.so
