Re: Redhat pam_krb5 and password expiry.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, Aug 30, 2002 at 02:55:01PM -0400, Nalin Dahyabhai wrote:
> On Wed, Aug 28, 2002 at 08:46:32AM -0600, Michael Houle wrote:
> > Sorry if this is a repeat but I couldn't find this in the archives:
> > 
> > We are using RedHat 7.2 with all latest patches and
> > pam_krb5-1.46-1 with krb5-*-1.2.2-14.
> > 
> > Pam works just fine with the exception of forcing password
> > expiry. I understand this is difficult with PAM as krb5 demands
> > a new password before authentication can complete.
> 
> Account management wasn't implemented until 1.49.  The 1.55 package
> from RHL 7.3 should install on your 7.2 box without problems.

I am having some similar problem, is the correct behaviour for the 7.3 krb5 pkg,
1.55, if you have a password expire, it will change your password then continue to
log you in, with credentials but not get our afs tokens (through either pam_krb5afs
or pam_krb5 w/ pam_openafs_session module). But logging out and back in with the
changed password works... 

Am I missing something?

-- 
---
Derek T. Yarnell
University of Maryland
Computer Science Department Unix Staff
derek@cs.umd.edu



_______________________________________________

Pam-list@redhat.com
https://listman.redhat.com/mailman/listinfo/pam-list

[Index of Archives]     [Fedora Users]     [Kernel]     [Red Hat Install]     [Linux for the blind]     [Gimp]

  Powered by Linux