LDAP-UX Client Services B.05.01 Administrator Guide for HP directory servers and Windows ADS

OTHER account sufficient libpam_unix.so.1
OTHER account required libpam_ldap.so.1
CAUTION: Setting the user password to be returned as any string for the hidden password,
and turning on the rcommand option for PAM_LDAP account management could allow users
with active accounts on a remote host to rlogin to the local host on to a disabled account.
If you have security concerns, see Section 7.4.10 (page 210) section in chapter 5 and
Section D.5 (page 430) for information on how to configure the PAM_AUTHZ library and the
rcommand option under the account management section in the /etc/pam.conf file.
For more information about the pam.conf file, see the pam.conf(4) manpage, and the Managing
Systems and Workgroups: A Guide for HP-UX System Administrators document at the following
location:
http://www.hp.com/go/hpux-core-docs (click HP-UX 11i v2)
2.5 Postinstallation configuration tasks 113