LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-16-2012, 01:43 AM   #1
anishkumarv
Member
 
Registered: Feb 2010
Location: chennai - India
Distribution: centos
Posts: 294

Rep: Reputation: 10
Lock and Unlock User Accounts Using PAM


Dear Team,

This is my entry in /etc/pam.d/system-auth



Code:
auth     required     pam_tally2.so deny=3 onerr=fail unlock_time=900
account  required      pam_tally2.so

but this is not working as i expect even after 4 fail logins also the user account is not locking. do i need to restart any service? i this for pam no need to restart any service.

kindly guide me to solve this issue.

Last edited by anishkumarv; 10-16-2012 at 01:44 AM.
 
Old 10-16-2012, 05:39 AM   #2
zQUEz
Member
 
Registered: Jun 2007
Distribution: Fedora, RHEL, Centos
Posts: 294

Rep: Reputation: 54
Where in your system_auth file do you have this line? Does it come after another auth line that might be stopping the check?
Are you getting any logging from pam_tally2? use command `pam_tally2` to report failed attempts or I believe /var/log/tally.log (or similiar).
What login mechanism are you testing this with? If sshd, is your sshd set to reference system-auth (/etc/pam.d/sshd)? Is your ssh set to use PAM at all (/etc/ssh/sshd_config)
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
sleep,hibernate and user lock,unlock events GNakul Linux - Newbie 1 08-02-2012 01:23 AM
user lock/unlock by bad tries LinuxLover Solaris / OpenSolaris 2 10-26-2010 03:45 PM
Trying to lock user accounts after too many login failures. larold Linux - Security 1 06-08-2010 02:39 PM
user lock with using PAM ajaysharma1181 Linux - Enterprise 1 10-27-2008 03:14 AM
lock and unlock munna_dude Programming 1 05-18-2007 06:03 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 11:06 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration