{
    my $status = $pam_tally{status} || 'disabled';
    return unless $status eq 'enabled';
    $OUT .= "auth        required      pam_tally.so onerr=fail no_magic_root";
}
auth        required      pam_env.so
{
    my $status = $pam_abl{status} || 'disabled';
    return unless $status eq 'enabled';
    $OUT .= "auth        required      pam_abl.so config=/etc/security/pam_abl.conf";
}
auth        sufficient    pam_unix.so likeauth nullok
{
    my $status = $ldap{Authentication} || 'disabled';
    return unless $status eq 'enabled';
    $OUT .= "auth        sufficient    pam_ldap.so use_first_pass";
}
auth        required      pam_deny.so

