The default file (/etc/auth/system/default) allows an administrator to define and change system-wide parameter values globally for users and devices.

Changes to this file are normally made by selecting the System Defaults Manager.

default contains three types of parameters:

System default parameters may be specified for fields found in the protected password (prpw) and terminal control (ttys) databases. Trusted programs honor the values from the prpw and ttys databases first if provided. Otherwise, the program may choose to use the system default value if one has been specified. If neither value is specified, the program may supply a reasonable default value or abort.

For descriptions of the specific fields provided by the protected password and terminal control databases, see the prpw(F) and ttys(F) manual pages.

The following fields are unique to the system default database and should not be specified in any of the other system databases:

Indicates whether inconsistencies between data held in the passwd file and the prpw database will cause a failure, or be silently ignored.

Set to the string ``default''.

Contains a value determining how many segments, each equivalent to 8 characters of clear text, are significant when validating passwords.

Identifies the security class supported by the system. Used for informational purposes only. Possible values are a1, b1, b2, b3, c1, c2, and d.

Indicates whether the root password is required to enter system maintenance mode.

Indicates whether the prpw database or the passwd file should be used when there are inconsistencies between them.


The following is an example of a typical system default database:
This system default database defines the three different types of values which are supported. The following values are assigned on a system-wide only basis:
This database also defines protected password and terminal control database default values. Fields beginning with u_ correspond to protected password fields. Similarly, fields starting with the t_ prefix are terminal control database fields. The three field types are used to supply system-wide default values if a user or terminal specific value is not supplied by the corresponding database. See the prpw(F) and ttys(F) manual pages for these databases for a complete description of the applicable fields.


