auth required pam_faillock.so preauth audit deny=3 even_deny_root unlock_time=300
auth sufficient pam_unix.so nullok try_first_pass
auth [default=die] pam_faillock.so authfail audit deny=3 even_deny_root unlock_time=300
auth requisite pam_listfile.so item=user onerr=succeed sense=deny file=/etc/login.user.deny
auth [success=1 default=ignore] pam_unix.so
auth required pam_deny.so
auth required pam_permit.so
