Hi, all I discovered another issue exposed in this incident. Since trixie, login is migrated to the util-linux package and becomes no longer essential. As a result, it is not assured that /etc/pam.d/login must exists. However, There are some packages that still install pam configurations which include login instead of common-auth. I found weston and greetd that are such examples using code search.
I wonder if we should add a lintian rule that can detect this. Cheers, Miao Wang

