LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 11-30-2006, 12:47 AM   #1
mambolim
LQ Newbie
 
Registered: Sep 2003
Posts: 1

Rep: Reputation: 0
tac_plus & PAM


Hello guys,

I have a set of Cisco network devices which I decided to manage the authentication through tac_plus by Shrubbery.net, and everything worked fine if I set the authentication method to /etc/passwd, but currently I need the feature which makes tac_plus authenticate users through PAM, which is why I chose Shrubbery.net's flavor of tacacs.

I am currently using:

Fedora Core 6
uname -r : 2.6.18-1.2849.fc6

I have compiled and installed tacacs+-F4.0.4.13, authenticating primarily from /etc/passwd. What I'll like to achieve is to set a system wide login attempts of 3, and lockout any user account except root in PAM. My system already has that policy set, but I'll like to apply this policy to tacacs as well. I have tried to set the authentication method to PAM, but it doesn't work, please see my config:

Code:
key = examplekey

# Now tacacs+ also use default PAM authentication

# Accounting records log file

accounting file = /var/log/tac_acc.log

#All services are alowed..

user = $enable$ {
login = cleartext "**Masked**"
}

group = admin {

     login = PAM
}


user = tester1 {

member = admin

}

Whenever I try to login with "tester1" it prompts me with "% Authentication Failure" without even prompting me for password. Log files aren't showing anything too.

I compiled the application with:

./configure --prefix=/usr/local/tacplus


Read through their documentation but it was not really complete on certain features and google did not yield much too, hence I'll like to ask for further advice or an example config even.

If the information provided is not sufficient I'll be glad to provide more, appreciate further advice.

Last edited by mambolim; 11-30-2006 at 12:49 AM.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
catch-22: lpd v (pam & gdm) Ystack Linux - Security 2 03-01-2006 06:51 PM
PAM authentication & NT domain rangel Linux - Security 2 11-27-2003 07:52 AM
PHP & Radius/PAM authentication etron Programming 1 10-16-2003 03:38 AM
Slackware, Samba, Winbind & PAM; Oh My! BulletSponge Slackware 3 06-20-2003 05:01 PM
Need help w/Samba & PAM Auth DocJones Linux - Software 3 05-14-2003 08:42 AM


All times are GMT -5. The time now is 01:22 AM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration