- amssh: use dedicated /etc/pam.d/amssh service instead of login (pam_u2f was commented out in login); auto-create service and register key on first-launch FIDO selection - amssh: redirect pamtester stdout+stderr to /dev/tty so the tap prompt is visible and the success message doesn't contaminate pass=$(_get_passphrase) - amssh: split _fido_pam_available into _fido_hardware_available (for dialog gating) and _fido_pam_available (runtime — requires keys file + PAM service) - setup: add pamtester to core-packages.sh - setup: add audit-packages.sh to verify installed packages come from the expected source (pacman/AUR/flatpak) Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| Desktop-Environments | ||
| FreeipaAnsible | ||
| optional-Modules | ||
| core-packages.sh | ||
| core.sh | ||
| package-managers.sh | ||
| shell-setup.sh | ||