Access to the SE Manager of an MU is only possible by means of authentication using an account and password.
For accounts, the password stored in the /etc/shadow
file is checked for authentication purposes.
A permanently specified PAM configuration (PAM = Pluggable Authentication Modules) is used for authentication purposes. The PAM configuration is used in the following cases:
SSH login at shell level
Login on the web interface
Login on the Gnome desktop of the local console
Passwords are hidden during entry (they are displayed as dots) and can consequently not be read by unauthorized persons.
If the login fails in the SE Manager, you can only log in again after a wait time of 10 seconds. This wait time protects against automated trial and error attacks.