[29601] in Kerberos
pam_krb5 problems
daemon@ATHENA.MIT.EDU (Oliver Weinmann)
Mon Mar 31 04:29:08 2008
Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Mon, 31 Mar 2008 10:28:00 +0200
Message-ID: <7149796D3C44874AA501840BD72E576C0270C317@zaphod.vegagroup.net>
From: "Oliver Weinmann" <oliver.weinmann@vega.de>
To: <kerberos@mit.edu>
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit
Hi,
i compiled krb5 under solaris8 and i can successfully login users from our Windows DC using kinit. I changed /etc/pam.conf to use pam_krb5 to automatically retrieve a TGT at login. This doesn't seem to work. I used the "debug" option in pam.conf but still nothing gets logged in /var/adm/messages. I tried the same on a RHEL4 using the krb5 package that came with it and here i can see:
Mar 31 10:22:10 rhel4wbtest1 sshd: pam_krb5[2959]: authentication fails for 'tuser' (tuser@TESTDOMAIN.NET): Authentication failure (Preauthentication failed)
kinit tuser works fine.
Any ideas?
Regards,
Oliver
Oliver Weinmann
Unix/Linux Administrator
VEGA IT GmbH
Europaplatz 5
D-64293 Darmstadt
Germany
Tel : +49 (0) 6151 8257 744
Fax : +49 (0)6151 8257-799
Email : oliver.weinmann@vega.de
Web : www.vega-group.com
Register court/Registergericht: Darmstadt, HRB No. 4096, Managing Directors/Geschäftsführer: Philip Cartmell, Susan Bygrave, John Lewis
Notice of Confidentiality
This transmission is intended for the named addressee only. It contains information which may be confidential and which may also be privileged. Unless you are the named addressee (or authorised to receive it for the addressee) you may not copy or use it, or disclose it to anyone else. If you have received this transmission in error please notify the sender immediately.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos