LDAP-UX Client Services B.05.00 Administrator's Guide
When status is specified as the <action> field, this defines a rule that is
evaluated to perform account and password policy enforcement. This access rule
defines a library, in the <library_name> field to be loaded, and a function in
the <function_name> field that specifies a function to be invoked to perform
policy evaluation for a particular directory server. See Section 5.3.10.1 (page 153)
for detailed information on the supported values and usage of this access rule.
<object> The values in this field define the policy criteria that PAM_AUTHZ uses to validate
with the login name. The values in this field are dependent on the option that is
stated in the <type> field.
5.3 PAM_AUTHZ login authorization 149