Udah aku coba ganti ke pam.d/sshdnya tapi sama aja tuh, pam_pwcheck dari
mana ya ??? soalnya aku settingan pertama ngikutin samba guide disitu dia
ada settingan untuk pam module supaya bisa authenticate pake LDAP dan memang
bekerja, cuma ssh nya doang yang engga bekerja dan ini ada lagi error lognya
kalo enggak pake pam_pwchecknya bilanganya permission denied ( ini pake
account local, jadi engga hubungin ldap kan harusnya??)

May 11 17:31:50 unicorn sshd(pam_unix)[20772]: auth could not identify
password for [it]
May 11 17:31:51 unicorn sshd(pam_unix)[20772]: authentication failure;
logname= uid=0 euid=0 tty=NODEVssh ruser= rhost=192.168.88.192  user=it
May 11 17:31:53 unicorn sshd[20772]: Failed password for it from
::ffff:192.168.88.192 port 2401
May 11 17:31:57 unicorn sshd[20772]: Failed password for it from
::ffff:192.168.88.192 port 2401
May 11 17:31:59 unicorn sshd[20772]: Accepted password for it from
::ffff:192.168.88.192 port 2401
May 11 17:31:59 unicorn pam_limits[20775]: setrlimit 11 to -1073754428
failed: Operation not permitted
May 11 17:31:59 unicorn sshd(pam_unix)[20775]: session opened for user it by
(uid=501)
May 11 17:31:59 unicorn sshd[20775]: fatal: PAM session setup failed[6]:
Permission denied


----- Original Message -----
From: "Cecep Mahbub" <[EMAIL PROTECTED]>
To: <tanya-jawab@linux.or.id>
Sent: Wednesday, May 11, 2005 4:05 PM
Subject: Re: [tanya-jawab] login user dari ssh dengan backend LDAP


> Adi Nugraha wrote:
>
> [...]
>
> > dan ini error log di /var/log/auth.log untuk user di lokal
> >
> > May 11 15:21:07 unicorn sshd[19344]: PAM unable to
> > dlopen(/lib/security/pam_pwcheck.so)
> > May 11 15:21:07 unicorn sshd[19344]: PAM [dlerror:
> > /lib/security/pam_pwcheck.so: cannot open shared object file: No such
file
> > or directory]
>
> sudah jelas kan? errornya karena file /lib/security/pam_pwcheck.so tidak
> ada. belum diinstall?
>
> > bahian modul pam_pwchecknya udah saya coba di quote engga bisa juga
> >
> > terus ini error untuk user LDAP
> >
> > May 11 15:24:11 unicorn sshd(pam_unix)[19360]: auth could not identify
> > password for [adi]
> > May 11 15:24:11 unicorn sshd(pam_unix)[19360]: check pass; user unknown
> > May 11 15:24:11 unicorn sshd(pam_unix)[19360]: authentication failure;
> > logname= uid=0 euid=0 tty=NODEVssh ruser= rhost=192.168.88.192
>
> log ini juga sudah jelas. error ada di bagian pam_unix. kenapa? karena
> di settingan /etc/pam.d/sshd
>
> password   required     pam_pwcheck.so nullok
> password   required     pam_ldap.so use_first_pass use_authtok
> password   required     pam_unix.so nullok use_first_pass use_authtok
>
> anda setting semuanya required. harusnya yang bagian awal anda setting
> sufficient. baca lagi tentang pam yah ...
>
>
> sepertinya, settingan /etc/pam.d/system-auth sudah betul. kenapa harus
> ditambah lagi di /etc/pam.d/sshd
>
> coba yang di /etc/pam.d/sshd ganti menjadi:
>
> auth       required     pam_stack.so service=system-auth
> auth       required     pam_nologin.so
> account    required     pam_stack.so service=system-auth
> password   required     pam_stack.so service=system-auth
> session    required     pam_stack.so service=system-auth
>
>
> -Cecep-
>
> --
> Unsubscribe: kirim email kosong ke [EMAIL PROTECTED]
> Arsip, FAQ, dan info milis di http://linux.or.id/milis
> Tidak bisa posting? Baca:
> http://linux.or.id/problemmilis
> http://linux.or.id/tatatertibmilis
>
>


-- 
Unsubscribe: kirim email kosong ke [EMAIL PROTECTED]
Arsip, FAQ, dan info milis di http://linux.or.id/milis
Tidak bisa posting? Baca:
http://linux.or.id/problemmilis
http://linux.or.id/tatatertibmilis

Kirim email ke