RHN satellite problem!

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hi,

I have users in more than one kerberos realm and am having trouble
enabling PAM authentication for all of them.

Users in the default realm can login to Satellite but others cannot.
Here default realm is AMER.EXAMPLE.COM in krb5.conf.

--krb5.conf--
[libdefaults]
default_realm = AMER.EXAMPLE.COM
--krb5.conf--

The syslog error generated when someone not in the default realm tries
to login is shown below.

--logs--
Apr 28 03:43:23 skeeter java: pam_krb5[25429]: authentication fails for
'iejacobp' (iejacobp@xxxxxxxxxxxxxxxx): User not known to the underlying
authentication module (Client not found in Kerberos database)
--logs--

The user 'iejacobp' is in the EMEA.EXAMPLE.COM realm, but because only
the bare username is passed by satellite to PAM, kerberos tries to use
the default realm to authenticate.

I am using kerberos to authenticate against Active Directory.

Is there a way to specify the realm when logging in?

Thanks & Regards,

Nirmal D Pathak.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
I was born free!
No Gates and Windows can restrict my Freedom!!

Enjoy Linux!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
-- 
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list

[Index of Archives]     [CentOS]     [Kernel Development]     [PAM]     [Fedora Users]     [Red Hat Development]     [Big List of Linux Books]     [Linux Admin]     [Gimp]     [Asterisk PBX]     [Yosemite News]     [Red Hat Crash Utility]


  Powered by Linux