User coming in through RDP has different settings than one logging in directly
When I log in to my CentOS 6.4 directly, nm-connection-editor works normally, I can edit connections. However, if I log in through rdp, I can't. "Edit" is always grayed out. It must be something simple I am not seeing.
Any pointers will be appreciated. |
rdp? More exactly?
|
rdp = Remote Desktop Protocol.
|
You talk about the xrdp or freerdp implementation?
Or Gnome has "a "RDP" server shich is a big messy misunderstanding because that is just plain and simple VNC. ? |
xrdp. Yes, it runs on VNC, but seems to connect nicely, no drops, no problems. It's just that the user coming in through rdp seems to have different settings and permissions. There has to be some hidden setting to make the system treat that user like any other logging in directly, but I haven't found it yet.
|
Most likely the user is treated as "inactive" or "not local" by consolekit/policykit. Log in a session, open a terminal then type:
Code:
ck-list-sessions Code:
Code:
active = Code:
is-local = |
I just tried that. I rebooted the machine to make sure it was clean. Then I rdp'ed to it and executed ck-list-sessions:
Code:
$ ck-list-sessions There a lot more files in there: Code:
# ls /usr/share/polkit-1/actions/ |
Some more info here:
http://scarygliders.net/2011/11/17/x...omment-page-1/ Here are some possible solutions: http://askubuntu.com/questions/47942...ger-privileged This command will list your permissions, check for network manager related stuff: Code:
pkaction --verbose |
I have changed all the policy files. All inactive permissions are now identical to active according to pkaction -verbose. Still no change. I wish there was just a way to cause new session to be marked as active and get it over with. There has to be a way. Obviously NetworkManager does not do what is expected.
I am beginning to understand also why most normal people do not want to touch Linux. I've been using it on the side since 0.99 pl 7, and it still causes me to gasp in frustration. |
Consider this closed. Decided the simplest solution was to disable NetworkManager and use network. Then I will have participants edit the interface in gedit and restart it. Works every time. Simple solutions work best. The more bloat is being introduced, the more like Windows this is becoming.
Thank you, gradinaruvasile, for all your help. |
Alas, I spoke too soon. Even though network brings up all interfaces as expected, xrdp no longer accepts connections. Apparently something depends on NetworkManager. I have to manually log in from the console and do:
# /etc/sysconfig/network-scripts/ifdown-eth eth0 # /etc/sysconfig/network-scripts/ifup-eth eth0 (yes, it has to be done via ifup-eth, not ifup, and not by restarting network) and then everything works. I think it is time to kick it to the curb and install Windows as a landing VM to my dismay. |
1. Network Manager is crap. It doesnt make sense to be used with fixed computers at all. Its ok for laptops.
2. Network Manager is NOT integral part of the Linux networking stack - if disabled for good it should not interfere. 3. Try Wicd - it does what NM does only it is a wrapper for the standard Linux tools instead of trying to replace them. |
Solved this in my xubuntu system
I had been looking for a solution to this problem (use xrdp to login) and this is what I did to make it work:
1. I edited file /etc/dbus-1/system.d/org.freedesktop.NetworkManager.conf as follows: a. cloned the policy user="root" below it and changed it to my user by changing the clone's first line to policy user="myUser" b. cloned the policy at_console="true" below it and changed the first line of the clone to policy at_console="false" 2. Needed to start NetworkManager using dbus by changing /etc/xdg/autostart/nm-applet.desktop line EXEC=nm-applet to EXEC=dbus-launch nm-applet 3. Changed all the permissions in the default section of the /usr/share/polkit-1/actions/org.freedesktop.NetworkManager.policy to this: <allow_any>yes</allow_any> <allow_inactive>yes</allow_inactive> <allow_active>yes</allow_active> Without the allow_any it did not work. I also changed those set to auth_admin_keep to yes. Didn't do an intermediate step so not sure if both the allow_any and the yes instead of auth_admin_keep are needed. |
Something depends on Network Manager- correct, firewalld for one depends on Network Manager. Network Manager uses dbus, it is better solution than what we had previously.
If you haven't solved it already, this looks like permissions problem, how is the remote system seeing you- as its local user or as the default user under which rdp service works? |
All times are GMT -5. The time now is 11:54 PM. |