[OpenAFS] Problem with pam on debian with 1.3.81 kernel 2.6.11
Lars Schimmer
schimmer@cg.cs.tu-bs.de
Thu, 14 Apr 2005 14:38:28 +0200
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Lars Schimmer schrieb:
| Christian Ospelkaus schrieb:
| |>I setup pam conf on debian sarge like it was written here:
| |>http://mailman.mit.edu/pipermail/kerberos/2004-October/006601.html
| |>
| |>And tried to login and get my tokens.
| |>
| |>I can login, but can't get any tickets. I hace to call kinit manually to
| |>get a ticket and after that aklog to obtain a token.
| |>Has anyone a working conf on debian sarge for me?
| |
| |
| | With pam_krb5afs.so:
| |
| | /etc/pam.d/common-auth:
| | auth sufficient pam_krb5afs.so
| | auth required pam_unix.so use_first_pass
| |
| | /etc/pam.d/common-session:
| | session optional pam_krb5afs.so
| | session required pam_unix.so
| |
| | /etc/pam.d/kscreensaver:
| | auth sufficient pam_krb5afs.so ignore_root force_creds
| refresh_creds
| | auth required pam_unix.so shadow try_first_pass
| |
| | in /etc/krb5.conf:
| | [....]
| | [appdefaults]
| | pam = {
| | ticket_lifetime = 86400
| | }
|
| After these changes I cannot login at all.
| I always get "permission denied".
Ok, after some more looking, I found, I don't have got the pam_krb5afs.so pam
module.
Only the pam_krb5 modules and pam_openafs_session.so.
So, where did you got that pam_krb5afs.so modul?
| | Regards,
| |
| | Christian
Cya
Lars
- --
- -----------------------------------------------------------------
Technische Universität Braunschweig, Institut für Computergraphik
Tel.: +49 531 391-2109 E-Mail: schimmer@cg.cs.tu-bs.de
PGP-Key-ID: 0xB87A0E03
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
iD8DBQFCXmREVguzrLh6DgMRAmJpAJwN+SZe9qAXT+f6yRd6j2qKsT9eOACfW2xP
y79G1nR9TIOfCpwGzPWOUhQ=
=nWew
-----END PGP SIGNATURE-----