[Bug 411249] Re: libpam-krb5 default configuration does not allow login for LDAP users

Steve Langasek steve.langasek at canonical.com
Mon Aug 10 15:44:02 UTC 2009


Thank you for taking the time to report this bug and help to improve
Ubuntu.

The provided file is incorrect and will not be applied.  It is by design
that users must pass both the pam_unix and pam_krb5 checks in order to
be authorized; the straightforward fix for your problem is to fix your
unix password entry so that the password is not expired.

The use of the 'try_first_pass' argument appears to be reasonable (I'm
not sure why this isn't part of the recommended default usage of
pam_krb5 - Russ?), but doesn't account for why the password change
failed in your case since pam_krb5 should be the *first* module listed
in the password stack.

-- 
libpam-krb5 default configuration does not allow login for LDAP users
https://bugs.launchpad.net/bugs/411249
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.

-- 
ubuntu-bugs mailing list
ubuntu-bugs at lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs




More information about the universe-bugs mailing list