On Tue, 2005-02-22 at 18:55, Tomas Mraz wrote: > Of course you cannot have pam_deny.so there in your configuration > because the pam_krb5 is optional - thus the pam_deny makes the password > fail regardless of the result of pam_krb5. So removing pam_deny was the > right thing to do. Thanks. I figured it was necessary to remove pam_deny but I wasn't sure what the consequences would be. -- Ian _______________________________________________ Pam-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/pam-list