PAM lines written into login and passwd as blocks, so login unlocks the keyring on both workstations; no daemon of its own; gcr's ssh agent named for the session until the environment can say a runtime-directory path. Go tools unlocked, lock, collections and ssh-keys, never reading a secret.
5 lines
293 B
Bash
5 lines
293 B
Bash
# The login keyring (module gnome-keyring, novox/hq ADR 0208, ADR 0102): the password typed at the
|
|
# login screen unlocks the keyring, and the login session starts the keyring daemon with it.
|
|
auth optional pam_gnome_keyring.so
|
|
session optional pam_gnome_keyring.so auto_start
|