> as far as I understand you should not be using the shadowAccount > objectClass attributes to get this behaviour Thanks. This goes against a lot of the documentation out there. > but you should be > configuring the password policies instead. Are the PADL PAM modules written to be aware of these policies as well as the shadowAccount attributes? -- - Kyle --------------------------------------------- kylet@xxxxxxxxx http://www.panix.com/~kylet --------------------------------------------- -- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users