In the Proxmox VE 8 release notes, there is a change listed under the Access Control section:
I assume this is meant to be used for restricting users able to login to the WebUI using Linux PAM. I haven't gotten around to testing this, but can anyone confirm it can be used in this capacity?
For example, if I wanted to restrict logins for the root@pam user to allow only clients in the local network 192.168.0.0/24, what configuration changes are needed to accomplish this?
When authenticating via PAM, pass the PAM_RHOST item. With this, it is possible to manually configure PAM such that certain users (for example root@pam) can only log in from certain hosts.
I assume this is meant to be used for restricting users able to login to the WebUI using Linux PAM. I haven't gotten around to testing this, but can anyone confirm it can be used in this capacity?
For example, if I wanted to restrict logins for the root@pam user to allow only clients in the local network 192.168.0.0/24, what configuration changes are needed to accomplish this?