[Bug 536930] [NEW] Password changing fails when "krb5" pam-config is not first

Daniel Richard G. skunk at iskunk.org
Wed Mar 10 21:50:27 GMT 2010


Public bug reported:

This concerns libpam-krb5 3.15-1 in Karmic.

If you use the "krb5" profile for pam-auth-update, password changing
works correctly---unless another profile goes above it, and the
"Password" clause is used instead of "Password-Initial". (I simulated
this by bumping the priority down to 255, putting it immediately after
the "unix" profile.) Then you get

$ passwd
passwd: Authentication information cannot be recovered
passwd: password unchanged

The problem is in passing "use_authtok" to pam_krb5. Comparatively,
try_first_pass/use_first_pass/nothing at least allows the "Current
Kerberos password:" prompt to come up.

** Affects: kerberos-configs (Ubuntu)
     Importance: Undecided
         Status: New

-- 
Password changing fails when "krb5" pam-config is not first
https://bugs.launchpad.net/bugs/536930
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to kerberos-configs in ubuntu.



More information about the Ubuntu-server-bugs mailing list