[22154] in Kerberos
K5 Login Issues.
daemon@ATHENA.MIT.EDU (John S. Willingham)
Tue Aug 10 09:39:24 2004
From: "John S. Willingham" <johnw@cpuinfo.net>
To: kerberos@mit.edu
Date: Tue, 10 Aug 2004 09:27:04 +0100
Message-Id: <20040810081740.M6494@cpuinfo.net>
MIME-Version: 1.0
Content-Type: text/plain;
charset=iso-8859-1
Errors-To: kerberos-bounces@mit.edu
General Question,
I have Kerberos setup and installed authenticating existing users without a
problem. However, after adding a new principal, the new user/princical can
use kinit/kadmin and ksu without authentication errors. However, the user
cannot authenticate via ssh/telnet/console on any kerberos enabled server.
Below are some of the log snippets from the message console on the server they
are attempting to authenticate.
Server #1
Aug 10 08:32:23 xyxyxy sshd[56801]: (pam_krb5) pam_sm_authenticate: result for
user `user01': Success
Aug 10 08:32:23 xyxyxy sshd[56799]: error: PAM: User not known to the
underlying authentication module
Server #2
Aug 10 08:32:14 ababab sshd[72199]: (pam_krb5) pam_sm_authenticate: result for
user `user01': Success
Aug 10 08:32:14 ababab sshd[72199]: (pam_krb5) pam_sm_acct_mgmt: result for
user `user01': Permission denied
Aug 10 08:32:14 ababab sshd[72197]: error: PAM: User not known to the
underlying authentication module
I have tried a few different approachs to this issue and have basically come
to the conclusion that there is some minor piece of a puzzle that I am missing
or a Larger scale problem, just hoping its not the later.
Note: There are already users/principals that are working without a problem.
Thanks for any assistance or guidance in advance.
---
JSW
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos