[Spacewalk-list] LDAP auth issues - spacewalk 2.4
Devendra Shanbhag
devendra at redhat.com
Wed Oct 4 23:27:13 UTC 2017
Hello team,
Couldnt find a Spacewalk distribution list hence sending to the Satellite
mailing list.
Need help on auth issues with Spacewalk 2.4.
Customer has a spacewalk server for managing package updates. Login to the
UI using local admin and 'spacewadmin' user is successful. Login via LDAP
account fails.
*==> /var/log/secure <==*
Sep 27 12:06:40 spacewalk-server-01 java: pam_krb5[16775]: TGT verified
Sep 27 12:06:40 spacewalk-server-01 java: pam_krb5[16775]: authentication
succeeds for 'd859112' (d859112 at CORE.DIR.TELSTRA.COM)
Sep 27 12:06:40 spacewalk-server-01 java: PAM audit_log_acct_message()
failed: Permission denied
*==> /var/log/messages <==*
Sep 27 12:06:40 spacewalk-server-01 server: 2017-09-27 12:06:40,459
[ajp-bio-0:0:0:0:0:0:0:1-8009-exec-438] WARN
com.redhat.rhn.domain.user.legacy.UserImpl
- PAM login for user User d859112 (id 26, org_id 5) failed with error
System error.
As per my understanding, LDAP auth is set up correctly.
The PAM module is as follows:
#%PAM-1.0
auth required pam_env.so
auth sufficient pam_krb5.so no_user_check
auth required pam_deny.so
account required pam_krb5.so no_user_check
The /etcrhn/rhn.conf is attached for reference.
Looking for assistance on fixing this.
Thank you all.
--
Dev
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/spacewalk-list/attachments/20171005/32c433aa/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: rhn.conf
Type: application/octet-stream
Size: 2378 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/spacewalk-list/attachments/20171005/32c433aa/attachment.obj>
More information about the Spacewalk-list
mailing list