It looks like the PAM configuration is not configurable by the user other than the security.pam.*.enable options for specific PAM modules
@Flakebi question since you seem to be the main author of this module: would it be possible to add an option security.pam.kanidm.enable (it depends on services.kanidm.enablePam which is already there)? That would be really nice!
EDIT:
It looks like it is Christmas today, and @max already made nixos/pam: support Kanidm by max-privatevoid · Pull Request #236757 · NixOS/nixpkgs · GitHub
Thanks!!
If this could be backported indeed, it would be more than awesome