So any setting i'm missing.I'm not able to figure out why this is not working,,,:(


On Sat, Nov 12, 2011 at 12:33 PM, Nitesh Mehare <nitesh26@gmail.com> wrote:
I have checked that file the setting is correct in that file below is the log

-bash-3.2# cat /etc/ssh/sshd_config |grep Use
#IgnoreUserKnownHosts no
#UsePAM no
UsePAM yes
#X11UseLocalhost yes
#UseLogin no
#UsePrivilegeSeparation yes
#PermitUserEnvironment no
#UseDNS yes
-bash-3.2#

Is there any configuration i'm missing.??

Thanks And Regards
Nitesh Mehare

On Fri, Nov 11, 2011 at 6:51 PM, Stephen Gallagher <sgallagh@redhat.com> wrote:
On Fri, 2011-11-11 at 14:48 +0530, Nitesh Mehare wrote:
> Jakub,
> I tried the modifying sssd.conf  to use  simple_allow_groups = idsldap
> Still it is not working.One thing I would like to ask .is my
> configuration correct in system-auth and nsswitch.conf file?
> Am i missing something.
> Also one more thing I have noticed in /var/log/secure log file
>
> Nov 11 13:34:58 bagira sshd[30879]: Address 9.118.25.17 maps to
> nitesh.in.ibm.com, but this does not map back to the address -
> POSSIBLE BREAK-IN ATTEMPT!
> Nov 11 13:35:00 bagira sshd[30879]: pam_unix(sshd:auth):
> authentication failure; logname= uid=0 euid=0 tty=ssh ruser=
> rhost=9.118.25.17  user=nitback1
> Nov 11 13:35:02 bagira sshd[30879]: Failed password for nitback1 from
> 9.118.25.17 port 4300 ssh2
>
> In above log i do not see entry for pam_sss I;m not sure why is
> this...


Can you make sure that your /etc/ssh/sshd_config file has 'UsePAM yes'
in it? That may make the difference.

_______________________________________________
sssd-devel mailing list
sssd-devel@lists.fedorahosted.org
https://fedorahosted.org/mailman/listinfo/sssd-devel