Bugzilla – Bug 1144044
Please add "pam_keyinit.so" to the /etc/pam.d/crond configuration file
Last modified: 2021-10-06 16:35:27 UTC
In the near future, the use of kernel keyrings will be enabled by systemd. To fully support this feature, the cronie package must include the pam_keyinit.so module in its /etc/pam.d/crond configuration file. Please add this module to the /etc/pam.d/crond configuration file with the appropriate parameters: session optional pam_keyinit.so revoke [force] Thanks.
I'm changing the target codestream to openSUSE:Tumbleweed as it doesn't make any sense to submit it for SLE15 where kernel keyrings are not supported now.
I've submitted "session optional pam_keyinit.so force revoke" to the openSUSE:Factory/cronie package (sr#726486). @Josef, can you please check it out? Thanks! I'm closing it as fixed, reopen if needed.