LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 05-29-2007, 12:43 PM   #1
jonfa
Member
 
Registered: Mar 2001
Location: FL
Posts: 257

Rep: Reputation: 30
pam_tally lockout time issue


Hi All,

I am trying to lockout users who have 3 failed password attempts for 15 minutes. I have added these 2 lines to my /etc/pam.d/system-auth (Centos 4.4):

auth required /lib/security/$ISA/pam_tally.so onerr=fail no-magic-root unlock_time=900

account required /lib/security/$ISA/pam_tally.so deny=3 no_magic_root reset per_user

I created the /var/log/faillog file as well.

I can get the system to lock me out after 3 failed attempts, but it will not let me in after 15 minutes. Any suggestions?

ps--I tried removing the "per_user", but still no luck.

Thanks
 
Old 06-01-2007, 11:51 AM   #2
legcard
Member
 
Registered: May 2007
Posts: 33

Rep: Reputation: 15
pam_tally

Hi Jonfa,
I am trying to config my pam also. Tricky. I am finding some of my errors show up in the /var/log/messages file. I just grep -i pam and see what pops up. For example, my lock_time=20 errored out. The log may give you some idea of what is not working. Just an idea.

I am new to linux but know sun & hp. Linux is a different beast. Wish I knew of a good pam book. Good luck.
Linda
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
pam_tally retry problem kskkumar SUSE / openSUSE 0 05-29-2007 04:35 AM
[problem with pam_tally] heilju Linux - Software 1 05-29-2007 04:12 AM
pam_tally help Rig24 Linux - Security 4 05-29-2007 04:11 AM
username/password lockout issue dungeonrock Red Hat 9 03-06-2006 02:04 PM
pam_tally - Red Hat 9 - Does it work? terminaljunkie Linux - Security 2 06-10-2003 08:21 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 08:44 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration