Hey all, I was trying to log into my FC6 system the other day and was able to do so. However, I attempted to do so again a few hours later, and was denied access. I've attached the relevant portion of /var/log/secure below:
Dec 14 21:08:07 localhost sshd[29350]: Accepted password for cylar from 64.30.124.105 port 1121 ssh2 Dec 14 21:08:14 localhost sshd[29350]: pam_unix(sshd:session): session opened for user cylar by (uid=0) Dec 14 21:09:13 localhost su: pam_unix(su-l:auth): authentication failure; logname=cylar uid=500 euid=0 tty=pts/0 ruser=cylar rhost= user=root Dec 14 23:20:40 localhost sshd[29350]: pam_keyinit(sshd:session): Unable to change GID to 500 temporarily Dec 14 23:20:40 localhost sshd[29350]: pam_unix(sshd:session): session closed for user cylar Dec 15 02:06:23 localhost sshd[30153]: refused connect from ::ffff:64.30.124.105 (::ffff:64.30.124.105) Dec 15 02:07:05 localhost sshd[30156]: refused connect from ::ffff:64.30.124.105 (::ffff:64.30.124.105) What gives? I double-checked and the firewall settings were unchanged from one time to the other (near as I can tell), as was my TCP wrappers scheme. Then, the following evening, I was able to log in as usual: Dec 15 22:25:36 localhost sshd[32762]: Accepted password for cylar from 64.30.124.105 port 1771 ssh2 Dec 15 22:25:41 localhost sshd[32762]: pam_unix(sshd:session): session opened for user cylar by (uid=0) What would make PAM lock me out, even temporarily? Thanks, Matt _______________________________________________ vox-tech mailing list [email protected] http://lists.lugod.org/mailman/listinfo/vox-tech
