Register a domain and help support LQ
Go Back > Forums > Linux Forums > Linux - Networking
User Name
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.


  Search this Thread
Old 11-30-2006, 01:47 AM   #1
LQ Newbie
Registered: Sep 2003
Posts: 1

Rep: Reputation: 0
tac_plus & PAM

Hello guys,

I have a set of Cisco network devices which I decided to manage the authentication through tac_plus by, and everything worked fine if I set the authentication method to /etc/passwd, but currently I need the feature which makes tac_plus authenticate users through PAM, which is why I chose's flavor of tacacs.

I am currently using:

Fedora Core 6
uname -r : 2.6.18-1.2849.fc6

I have compiled and installed tacacs+-F4.0.4.13, authenticating primarily from /etc/passwd. What I'll like to achieve is to set a system wide login attempts of 3, and lockout any user account except root in PAM. My system already has that policy set, but I'll like to apply this policy to tacacs as well. I have tried to set the authentication method to PAM, but it doesn't work, please see my config:

key = examplekey

# Now tacacs+ also use default PAM authentication

# Accounting records log file

accounting file = /var/log/tac_acc.log

#All services are alowed..

user = $enable$ {
login = cleartext "**Masked**"

group = admin {

     login = PAM

user = tester1 {

member = admin


Whenever I try to login with "tester1" it prompts me with "% Authentication Failure" without even prompting me for password. Log files aren't showing anything too.

I compiled the application with:

./configure --prefix=/usr/local/tacplus

Read through their documentation but it was not really complete on certain features and google did not yield much too, hence I'll like to ask for further advice or an example config even.

If the information provided is not sufficient I'll be glad to provide more, appreciate further advice.

Last edited by mambolim; 11-30-2006 at 01:49 AM.


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
catch-22: lpd v (pam & gdm) Ystack Linux - Security 2 03-01-2006 07:51 PM
PAM authentication & NT domain rangel Linux - Security 2 11-27-2003 08:52 AM
PHP & Radius/PAM authentication etron Programming 1 10-16-2003 04:38 AM
Slackware, Samba, Winbind & PAM; Oh My! BulletSponge Slackware 3 06-20-2003 06:01 PM
Need help w/Samba & PAM Auth DocJones Linux - Software 3 05-14-2003 09:42 AM

All times are GMT -5. The time now is 07:27 PM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration