hello,

Quand on aime on ne compte pas...

Retour à nos moutons...

Depuis notre derniere vacation, on a tous cassé et tout réinstallé (rh9 exim
et tout le bordel)

meme motif meme punition

on a lancé exim en mode debug voila le résultat

> # /usr/sbin/exim -bs -d all

Exim version 4.20 uid=0 gid=0 pid=2931 D=fbb95cfd
Berkeley DB: Sleepycat Software: Berkeley DB 4.0.14: (November 18, 2001)
Support for: PAM
Authenticators: plaintext
Routers: accept dnslookup ipliteral manualroute queryprogram redirect
Transports: appendfile autoreply pipe smtp
changed uid/gid: forcing real = effective
  uid=0 gid=0 pid=2931
  auxiliary group list: <none>
configuration file is /etc/exim.conf
log selector = 020d99d8
trusted user
admin user
changed uid/gid: privilege not needed
  uid=8 gid=12 pid=2931
  auxiliary group list: <none>
originator: uid=0 gid=0 login=root name=root
sender address = NULL
LOG: smtp_connection MAIN
  SMTP connection from root
SMTP>> 220 mondomaine.com ESMTP Exim 4.20 Wed, 20 Aug 2003 19:36:33 +0200
smtp_setup_msg entered
SMTP<< AUTH LOGIN
LOG: smtp_protocol_error MAIN
  SMTP protocol error in "AUTH LOGIN" U=root AUTH command used when not
advertised
SMTP>> 503 AUTH command used when not advertised
SMTP<< ehlo user
 in pipelining_advertise_hosts? yes (matched "*")
 in auth_advertise_hosts? yes (matched "*")
SMTP>> 250-mondomaine.com Hello root at user
250-SIZE 52428800
250-PIPELINING
250-AUTH LOGIN
250 HELP
SMTP<< AUTH LOGIN
 in smtp_accept_max_nonmail_hosts? yes (matched "*")
SMTP>> 334 VXNlcm5hbWU6
SMTP>> 334 UGFzc3dvcmQ6
Running PAM authentication for user "user"
PAM error: Permission denied
login authenticator:
  $1 = user
  $2 = motdepasse
expansion failed: Permission denied
SMTP>> 435 Unable to authenticate at present
LOG: MAIN REJECT
  login authenticator failed for root: 435 Unable to authenticate at present
(set_id=user): Permission denied
PAM error: Authentication failure
login authenticator:
  $1 = user
  $2 = motdepasse
expanded string: 0
SMTP>> 535 Incorrect authentication data
LOG: MAIN REJECT
  login authenticator failed for root: 535 Incorrect authentication data
(set_id=user)
SMTP<< quit
SMTP>> 221 modomaine.com closing connection
LOG: smtp_connection MAIN
  SMTP connection from root closed by QUIT
search_tidyup called
>>>>>>>>>>>>>>>> Exim pid=2931 terminating with rc=0 >>>>>>>>>>>>>>>>
SMTP>> 421 mondomaine.com lost input connection
LOG: smtp_connection MAIN
  SMTP connection from root lost (error: Input/output error)
search_tidyup called


après analyse avec les collegues, il s'avere que le pb vient des droits de
lecture sur le fichier /etc/shadow!!!!! eh oui

Grosse discussion sur l'oportunité de données des droits de lecture sur
/etc/shadow (risque de decodage des mdp lors d'une intrusion par personne
malveillante...)


Kenavo

Patrick


Linux-Azur :      http://www.linux-azur.org
Désinscriptions: http://www.linux-azur.org/liste.php3
**** Pas de message au format HTML, SVP ****

Répondre à