[OpenAFS] Problem with pam on debian with 1.3.81 kernel 2.6.11

Lars Schimmer schimmer@cg.cs.tu-bs.de
Thu, 14 Apr 2005 14:38:28 +0200


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Lars Schimmer schrieb:
| Christian Ospelkaus schrieb:
| |>I setup pam conf on debian sarge like it was written here:
| |>http://mailman.mit.edu/pipermail/kerberos/2004-October/006601.html
| |>
| |>And tried to login and get my tokens.
| |>
| |>I can login, but can't get any tickets. I hace to call kinit manually to
| |>get a ticket and after that aklog to obtain a token.
| |>Has anyone a working conf on debian sarge for me?
| |
| |
| | With pam_krb5afs.so:
| |
| | /etc/pam.d/common-auth:
| | auth       sufficient   pam_krb5afs.so
| | auth       required     pam_unix.so use_first_pass
| |
| | /etc/pam.d/common-session:
| | session    optional     pam_krb5afs.so
| | session    required     pam_unix.so
| |
| | /etc/pam.d/kscreensaver:
| | auth    sufficient      pam_krb5afs.so ignore_root force_creds
| refresh_creds
| | auth    required        pam_unix.so     shadow  try_first_pass
| |
| | in /etc/krb5.conf:
| | [....]
| | [appdefaults]
| |   pam = {
| |     ticket_lifetime = 86400
| |   }
|
| After these changes I cannot login at all.
| I always get "permission denied".

Ok, after some more looking, I found, I don't have got the pam_krb5afs.so pam
module.
Only the pam_krb5 modules and pam_openafs_session.so.

So, where did you got that pam_krb5afs.so modul?

| | Regards,
| |
| | Christian

Cya
Lars
- --
- -----------------------------------------------------------------
Technische Universität Braunschweig, Institut für Computergraphik
Tel.: +49 531 391-2109            E-Mail: schimmer@cg.cs.tu-bs.de
PGP-Key-ID: 0xB87A0E03


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFCXmREVguzrLh6DgMRAmJpAJwN+SZe9qAXT+f6yRd6j2qKsT9eOACfW2xP
y79G1nR9TIOfCpwGzPWOUhQ=
=nWew
-----END PGP SIGNATURE-----