SSH login and pwd expiration message

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> I've configured a RHEL3 as LDAP client to my FedoraDS 1.0.2 on RHEL4.
> When I login via ssh with an LDAP account on the ldapclient I immediately get
> You are required to change your password immediately (password aged)
> Your password has expired, the session cannot proceed.
> You must change your password now and login again!
> 
> After that I change the password and login again and I get the same error again.
> Any idea what's causing this? Is it an ACL that's preventing some
> attributes to be updates? Which attributes? If I just for testing
> delete these attributes I should get rid of this message, shouldn't I?

Assuming you're using shadowAccount attributes for your password expiry, you
are seeing just what I saw until "write for self" access was given to users
to up the shadowLastChange attribute. Here's how I fixed it in admin console.

In Directory tab, select root domain

Right click and select "Set Access Permissions"

Select "Enable self-write for common attributes" and click on Edit

After "userPassword", insert "|| shadowLastChange " and click on OK and
again on OK on the parent window.

-- 
- Kyle 
---------------------------------------------
kylet at panix.com   http://www.panix.com/~kylet    
---------------------------------------------




[Index of Archives]     [Fedora User Discussion]     [Older Fedora Users]     [Fedora Announce]     [Fedora Package Announce]     [EPEL Announce]     [Fedora News]     [Fedora Cloud]     [Fedora Advisory Board]     [Fedora Education]     [Fedora Security]     [Fedora Scitech]     [Fedora Robotics]     [Fedora Maintainers]     [Fedora Infrastructure]     [Fedora Websites]     [Anaconda Devel]     [Fedora Devel Java]     [Fedora Legacy]     [Fedora Desktop]     [Fedora Fonts]     [ATA RAID]     [Fedora Marketing]     [Fedora Management Tools]     [Fedora Mentors]     [Fedora Package Review]     [Fedora R Devel]     [Fedora PHP Devel]     [Kickstart]     [Fedora Music]     [Fedora Packaging]     [Centos]     [Fedora SELinux]     [Fedora Legal]     [Fedora Kernel]     [Fedora QA]     [Fedora Triage]     [Fedora OCaml]     [Coolkey]     [Virtualization Tools]     [ET Management Tools]     [Yum Users]     [Tux]     [Yosemite News]     [Yosemite Photos]     [Linux Apps]     [Maemo Users]     [Gnome Users]     [KDE Users]     [Fedora Tools]     [Fedora Art]     [Fedora Docs]     [Maemo Users]     [Asterisk PBX]     [Fedora Sparc]     [Fedora Universal Network Connector]     [Fedora ARM]

  Powered by Linux