Commit 5c8f83f5 authored by Maciej Delmanowski's avatar Maciej Delmanowski

[debops.sshd] Note about disabling custom PAM conf

parent 0d39d14f
......@@ -19,6 +19,10 @@ and generate a new one, with PAM access control enabled and using the separate
defined in the :envvar:`sshd__pam_access__dependent_rules` variable and are
managed by the :ref:`debops.pam_access` Ansible role.
To disable the custom access control configuration, set the
:envvar:`sshd__pam_deploy_state` variable to ``absent``. The PAM access control
file will still be generated, but it will not be used by the ``sshd`` service.
Global root access
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment