Problems authenticating users via AD with Kerberos on Solaris 9

From: Smith, William E. \(Bill\), Jr. (Bill.Smith@jhuapl.edu)
Date: Wed Aug 17 2005 - 09:36:49 EDT


We have a Solaris 9 server that we configured to authenticate users via
Active Directory using Kerberos. Things worked when we first set things
up but recently for whatever reason(s), Kerberos authentication does not
seem to work as I continue to get failed login attempts every time I or
other users use their AD password. I've been trying to figure out
what's going on for days to no avail so posting here hoping someone can
shed some light. Here's a snippet of the pam.conf. The uncommented
entries are the only ones uncommented in the file. Any other reference
to pam_krb5.so.1 is commented out.

# Default definitions for Authentication management
# Used when service name is not explicitly mentioned for authenctication
#
#other auth requisite pam_authtok_get.so.1
#other auth required pam_dhkeys.so.1
other auth sufficient pam_krb5.so.1
other auth required pam_unix_auth.so.1

Nothing has changed with regard to the Kerberos configuration (as far as
I know and can tell) but something is obviously amiss.

Any insight or suggestions here would be appreciated.

Bill Smith
<mailto:bill.smith@jhuapl.edu>
ISS Server Systems Group
Johns Hopkins University Applied Physics Laboratory
11100 Johns Hopkins Road
Laurel, MD 20723
Phone: 443-778-5523
Web: http://www.jhuapl.edu
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:31:20 EDT