[Spacewalk-list] LDAP auth issues - spacewalk 2.4

Devendra Shanbhag devendra at redhat.com
Wed Oct 4 23:27:13 UTC 2017


Hello team,

Couldnt find a Spacewalk distribution list hence sending to the Satellite
mailing list.

Need help on auth issues with Spacewalk 2.4.

Customer has a spacewalk server for managing package updates. Login to the
UI using local admin and 'spacewadmin' user is successful. Login via LDAP
account fails.


*==> /var/log/secure <==*
Sep 27 12:06:40 spacewalk-server-01 java: pam_krb5[16775]: TGT verified
Sep 27 12:06:40 spacewalk-server-01 java: pam_krb5[16775]: authentication
succeeds for 'd859112' (d859112 at CORE.DIR.TELSTRA.COM)
Sep 27 12:06:40 spacewalk-server-01 java: PAM audit_log_acct_message()
failed: Permission denied

*==> /var/log/messages <==*
Sep 27 12:06:40 spacewalk-server-01 server: 2017-09-27 12:06:40,459
[ajp-bio-0:0:0:0:0:0:0:1-8009-exec-438] WARN
com.redhat.rhn.domain.user.legacy.UserImpl
- PAM login for user User d859112 (id 26, org_id 5) failed with error
System error.

As per my understanding, LDAP auth is set up correctly.

The PAM module is as follows:
#%PAM-1.0
auth        required      pam_env.so
auth        sufficient    pam_krb5.so no_user_check
auth        required      pam_deny.so
account     required      pam_krb5.so no_user_check


The /etcrhn/rhn.conf is attached for reference.

Looking for assistance on fixing this.

Thank you all.



--
Dev
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/spacewalk-list/attachments/20171005/32c433aa/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: rhn.conf
Type: application/octet-stream
Size: 2378 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/spacewalk-list/attachments/20171005/32c433aa/attachment.obj>


More information about the Spacewalk-list mailing list