pam_mount.conf(5) pam_mount 2.22 pam_mount.conf(5) (NAME) pam_mount.conf - pam_mount (OVERVIEW) pam_mount pam_mount . 0.18 pam_mount XML pam_mount . < > & XML < > & " "" " . (verbatim) () - XML pam_mount . (Volume definitions) () : . . (Simple user control) . AND . << >> . user="username" . uid="number" uid="number-number" (UID) UID . pgrp="groupname" . gid="number" gid="number-number" GID GID . sgrp="groupname" ( ). (Volume configuration) . fstype="type" pam_mount . fstype pam_mount pam_mount . fstype mount(8) /sbin/mount.fstype mount(8) mount(2) . mount(8) auto . fstype fstype="auto" . auto mount(8) /proc/partitions . cifs smbfs ncpfs fuse nfs nfs4 pam_mount mount(8) . <<>> . noroot="1" (root) . fuse yes FUSE . server="name" cifs smbfs ncpfs nfs . . path fstype . ( CIFS "//server/path" NFS "server:path" .) path="path" ( ) . mountpoint="directory" . "~" sh passwd . "~name" . /etc/fstab path fstab . header="path" () LUKS . `cryptsetup --header` . LUKS . options="..." . /etc/fstab ( mountpoint ) fstab . ssh="0" ssh="1" ssh (zerossh fd0ssh(1) ) ssh . SSH ( ccgfs sshfs) . (hang) . empty_pass="0" empty_pass="1" empty_pass . true . empty_pass false pam_mount . cipher="cipher" cryptsetup . fstype crypt . fskeycipher="ciphertype" OpenSSL fskey. fstype crypt ( dm-crypt LUKS) . "none" cryptsetup OpenSSL . fskeyhash="hash" () OpenSSL fskey. fskeypath="path" . ignoresource="1" . path . by-label NFS . (VARIABLES) ( ) %(name) . . %(USER) . %(DOMAIN_NAME), %(DOMAIN_USER) Winbind "domain\username" %(DOMAIN_NAME) %(DOMAIN_USER) . MSAD : . %(USERUID), %(USERGID) (UID) (GID) . ()getpw* ()getuid. uid= gid= : . smbfs cifs uid=%(USERUID) pam_mount . %(GROUP) %(USERGID). pam_mount . PAM_MOUNT (PAM_MOUNT PARAMETERS) pam_mount.conf.xml pam_mount . (General tunables) stderr syslog . stderr doc/bugs.txt . 0 1 pam_mount 2 mount.crypt . 0 . . . ( <<>> .) X X X . pam_mount . name . . ( ) . (superuser) . . luserconfig luserconfig . ( ). . . "nosuid,nodev" allow="..." . allow="..." . deny . . require . "nosuid,nodev" allow="" . directories... PATH pam_mount . (Volume-related) . enable pam_mount . remove true pam_mount . (Auxiliary programs) . uid= CIFS root root . program... fd0ssh OpenSSH (stdin) OpenSSH . fsck -p %(FSCKTARGET) . ofl -k%(SIGNAL) %(MNTPT) Open File Lister . pmvarrun ... pmvarrun(8) . (Mount programs) . . PATH . PATH pam_mount ( ). mount -t %(FSTYPE) ... . umount %(MNTPT) umount umount . (lazy unmounting) `/sbin/umount -l` . (unmapped). Loopback ( ). SMB %(MNTPT) %(VOLUME). . umount . mount.cifs ... mount.crypt ... umount.crypt %(MNTPT) dm-crypt LUKS. mount.fuse ... fuserumount ... ncpmount ... ncpumount ... mount %(SERVER):%(VOLUME) ... smbmount ... smbumount ... (Messages) pam_mount password: pam_mount PAM (prompt) . reenter...: PAM 'session' ( su ) . . (Extended user control) . : students profs (students && !profs) . (Logical operators) * AND . . * OR . . {2} XOR . (NOT) . (User selection) username . number number-number UID UID UID. number number-number GID GID. groupname groupname . groupname name ( ). (Attributes) icase="yes" icase="no" icase ( ) . "no" . regex="yes" ( no) regex (PCRE) . "icase" ( ) . : joe "joe" . regex ^ $ . : ^.*joe.*$ . (EXAMPLES) ~ mountpoint getpwent(3) . sshfs ccgfs (:) ssh . fd0ssh ( hxtools): fd0ssh: "password_stdin" sshfs "assword" ssh fd0ssh "askpass" SSH (passphrase) . 1.4.x encfs ( 1.3 encfs .) NFS CIFS Bind pam_chroot : tmpfs tmpfs ( Mike Hommey ): dm-crypt Crypt CONFIG_BLK_DEV_DM CONFIG_DM_CRYPT CONFIG_CRYPTO_AES CONFIG_CRYPTO_BLOWFISH CONFIG_CRYPTO_TWOFISH. LUKS volume path="/home/%(USER).img" mountpoint="~" header="/home/%(USER)-header.img" /> cryptoloop cryptoloop pam_mount . : "WARNING: This device [cryptoloop] is not safe for journal[l]ed filesystems[...]. Please use the Device Mapper [dm-crypt] module instead." OpenBSD OpenBSD: pam_mount 2.22 2025-10-30 pam_mount.conf(5)