[OpenAFS] pam worries debian etch and KDE 3.5.x - still annoying

Christopher D. Clausen cclausen@acm.org
Tue, 21 Nov 2006 09:39:02 -0600


Lars Schimmer <l.schimmer@cgv.tugraz.at> wrote:
> Christopher D. Clausen wrote:
>> Add some debug directives to the PAM config and tail
>> /var/log/auth.log to see what is going on.
>
> It looks not so well:
>
> Nov 21 15:59:20 testpc pam_limits[3449]: reading settings from
> '/etc/security/limits.conf'
> Nov 21 15:59:20 testpc [3449]: (pam_krb5): schimmer: pam_sm_setcred:
> entry (0x2)
> Nov 21 15:59:20 testpc [3449]: (pam_krb5): schimmer: initializing
> ticket cache /tmp/krb5cc_1005_pVPrv1
> Nov 21 15:59:20 testpc [3449]: (pam_krb5): schimmer: pam_sm_setcred:
> exit (success)
> Nov 21 15:59:20 testpc [3449]: pam_openafs-krb5: open_session: fork..
> Nov 21 15:59:20 testpc [3528]: pam_openafs-krb5: ENVIRONNEMENT:
> KRB5CCNAME=/tmp/krb5cc_1005_pVPrv1
> Nov 21 15:59:20 testpc [3449]: pam_openafs-krb5: KRB5 OPENSESSION: OK
> ! Nov 21 15:59:20 testpc [3449]: (pam_krb5): schimmer: pam_sm_setcred:
> entry (0x2)
> Nov 21 15:59:20 testpc [3449]: (pam_krb5): schimmer: pam_sm_setcred:
> exit (success)
> Nov 21 15:59:20 testpc [3449]: (pam_unix) session opened for user
> schimmer by (uid=0)
> Nov 21 15:59:23 testpc kdm: :0[3449]: (pam_unix) session closed for
> user schimmer
> Nov 21 16:00:10 testpc kdm: :0[3591]: (pam_unix) auth could not
> identify password for [schimmer]
>
> Another test with home in non OpenAFS filespace tells me, I got a
> ticket but no token while logging in with kdm :-(
> Strange, Ive got a token while loggin in in a terminal.
>
> Maybe I did something absolute wrong here.

Try copying http://www.acm.uiuc.edu/admin/ubuntu/pam.d/gdm over your 
/etc/pam.d/kdm file.  We don't use kdm, so the file there is the default 
one, which likely doesn't work.  (If it works, let me know and I'll 
update the copy on our side.)

<<CDC