LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 06-11-2014, 02:59 PM   #1
ghughes5669
LQ Newbie
 
Registered: Oct 2012
Posts: 23

Rep: Reputation: Disabled
Question Local login weirdness


Good afternoon, all!

I've recently run across a problem that has me stumped. It has to do with local accounts on machines that have OpenLDAP installed. These are mostly Red Hat 4 and 5 installations.

I can create a user with adduser or useradd, either one. If I try to login with that new account, from SSH or from the console, I get "Access denied". However, I can su to that user, enter their password, and get all around the box. This shows that it's not strictly a credentials issue. I checked and there's no pam_deny, or anything like that.

I also double-checked permissions on /home/user and actually set everything to 777, with no joy.

Are there any other corners where an interactive login might be barred for new accounts?

Thanks to all in advance!


Gregg
 
Old 06-11-2014, 07:36 PM   #2
linosaurusroot
Member
 
Registered: Oct 2012
Distribution: OpenSuSE,RHEL,Fedora,OpenBSD
Posts: 982
Blog Entries: 2

Rep: Reputation: 244Reputation: 244Reputation: 244
What's your /etc/ssh/sshd_config ? And what's in the logs about failed attempts ?
 
Old 06-12-2014, 09:28 AM   #3
ghughes5669
LQ Newbie
 
Registered: Oct 2012
Posts: 23

Original Poster
Rep: Reputation: Disabled
RE: local login weirdness

Hello, linosaurusroot!

Relevant portions are:

Jun 9 15:08:38 testserver passwd(pam_unix)[10667]: password changed for testadmin
Jun 9 15:09:06 testserver sshd(pam_unix)[10668]: authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=dhcp20.testdomain.com user=testadmin

I can su to that user, so login is working through that route. The failures happen both on the console and through SSH

SSH configs:

# Host *
# ForwardAgent no
# ForwardX11 no
# RhostsRSAAuthentication no
# RSAAuthentication yes
# PasswordAuthentication yes
# HostbasedAuthentication no
# BatchMode no
# CheckHostIP yes
# AddressFamily any
# ConnectTimeout 0
# StrictHostKeyChecking ask
# IdentityFile ~/.ssh/identity
# IdentityFile ~/.ssh/id_rsa
# IdentityFile ~/.ssh/id_dsa
# Port 22
# Protocol 2,1
# Cipher 3des
# Ciphers aes128-cbc,3des-cbc,blowfish-cbc,cast128-cbc,arcfour,aes192-cbc,aes256-cbc
# EscapeChar ~
Host *
GSSAPIAuthentication yes
# If this option is set to yes then the remote X11 clients will have full access
# to the local X11 display. As virtually no X11 client supports the untrusted
# mode correctly we set this to yes.
ForwardX11Trusted yes
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Remote ssh login (passwords useless), and local login (using password) linuxStudent11 Linux - Security 1 01-09-2013 01:30 PM
LDAP login weirdness fantasygoat Linux - Security 10 11-05-2009 11:29 AM
OpenSUSE 10.3 Name resolution weirdness on local network odevans SUSE / openSUSE 3 01-07-2008 05:35 AM
ssh login weirdness kav Linux - Networking 10 12-26-2006 05:59 AM
login weirdness after dist-upgrade rosslaird Debian 9 07-30-2004 04:00 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 08:51 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration