[22154] in Kerberos

home help back first fref pref prev next nref lref last post

K5 Login Issues.

daemon@ATHENA.MIT.EDU (John S. Willingham)
Tue Aug 10 09:39:24 2004

From: "John S. Willingham" <johnw@cpuinfo.net>
To: kerberos@mit.edu
Date: Tue, 10 Aug 2004 09:27:04 +0100
Message-Id: <20040810081740.M6494@cpuinfo.net>
MIME-Version: 1.0
Content-Type: text/plain;
	charset=iso-8859-1
Errors-To: kerberos-bounces@mit.edu

General Question,


I have Kerberos setup and installed authenticating existing users without a
problem.  However, after adding a new principal, the new user/princical can
use kinit/kadmin and ksu without authentication errors.  However,  the user
cannot authenticate via ssh/telnet/console on any kerberos enabled server. 
Below are some of the log snippets from the message console on the server they
are attempting to authenticate.  

Server #1

Aug 10 08:32:23 xyxyxy sshd[56801]: (pam_krb5) pam_sm_authenticate: result for
user `user01': Success
Aug 10 08:32:23 xyxyxy sshd[56799]: error: PAM: User not known to the
underlying authentication module

Server #2
Aug 10 08:32:14 ababab sshd[72199]: (pam_krb5) pam_sm_authenticate: result for
user `user01': Success
Aug 10 08:32:14 ababab sshd[72199]: (pam_krb5) pam_sm_acct_mgmt: result for
user `user01': Permission denied
Aug 10 08:32:14 ababab sshd[72197]: error: PAM: User not known to the
underlying authentication module


I have tried a few different approachs to this issue and have basically come
to the conclusion that there is some minor piece of a puzzle that I am missing
or a Larger scale problem, just hoping its not the later.


Note: There are already users/principals that are working without a problem.

Thanks for any assistance or guidance in advance.

---
JSW

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post