[22102] in Kerberos
Re: Linux Client fails logon on Solaris server
daemon@ATHENA.MIT.EDU (Arun Perinkolam)
Fri Jul 30 16:23:00 2004
Date: Fri, 30 Jul 2004 13:16:55 -0700 (PDT)
From: Arun Perinkolam <arunp@sun.com>
To: "Gruber Johannes (IFAT IT OS CS External)" <Gruber.External@infineon.com>
In-Reply-To: <cedu6u$kv9$1@newssrv.muc.infineon.com>
Message-ID: <Pine.GSO.4.33.0407301312300.6970-100000@mufasa1.SFBay.Sun.COM>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
> Hi,
>
> I have a Solaris 9 KDC and a RH Enterprise 3 Client. I would like to do
> authentication via Kerberos, the user data are stored in a ldap server.
>
> I have already configured the Client according several manuals and I get a
> kerberos ticket.
> But if I logon as user, I get the message
> pam_krb5: unable to determine uid/gid for user
> pam_krb5: authentication fails for 'NOUSER'
>
> What could be the problem? Do I have to logon as kerberos-principal (e.g.
> bobo/branch.company.com or as ldap-user?
Firstly, have you created a valid kerberos principal
in the Solaris 9 KDC database for the ldap user in question ?
And for pam-kerberos to work correctly, you would need to setup
pam.conf correctly for the required service (which in this case
is login, I presume) on the client.
Regards,
Arun.
--
Arun Perinkolam
Solaris Network Security
Sun Microsystems Inc.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos