Suspension: clear shell from /etc/passwd to block login keys (SECURITY)

Version 1.62.0


Previously, for ssh access, the user suspension would only lock the account with usermod so that the crypted password has a ! character in front. This was fine, however it did not account for login keys which never check the password field. Solution is to also swap the shell to /bin/false (or /sbin/nologin) when the account is suspended.

