[22773] in Kerberos
Re: problem setting up ssh-krb5 from Debian Sarge
daemon@ATHENA.MIT.EDU (Wes Chow)
Fri Oct 29 13:28:12 2004
Date: Fri, 29 Oct 2004 13:26:24 -0400
From: Wes Chow <wes@woahnelly.net>
To: kerberos@mit.edu
Message-ID: <20041029172624.GJ22218@bebop.senortoad.com>
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <41827A59.4060805@paritysys.net>
Errors-To: kerberos-bounces@mit.edu
> I would recommend changing your common-auth so that pam is not
> required. Mine reads like this:
>
> #auth required pam_unix.so nullok_secure
> auth sufficient pam_krb5.so
> auth sufficient pam_unix.so nullok try_first_pass
> auth required pam_deny.so
>
> So I have pam_unix.so commented out where it's defined as required
> and include it on another line as sufficient. That may be what's blocking
> you.
Still no go, and I have the exact same common-auth as you. Something
else I just realized, though, is that I'm using NIS for distributing
account information.
Maybe I'm missing something with that... my nsswitch.conf file is:
passwd: compat
group: compat
shadow: compat
wchow@jack:~$ ypcat passwd
wchow:x:1000:100:Wes Chow,,,:/home/wchow:/bin/bash
Do I need anything in PAM for this?
Thanks,
Wes
--
http://www.woahnelly.net/~wes/ OpenPGP key = 0xA5CA6644
fingerprint = FDE5 21D8 9D8B 386F 128F DF52 3F52 D582 A5CA 6644
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos