[Gllug] Kerberos

Bruce Richardson itsbruce at workshy.org
Tue Nov 2 01:48:57 UTC 2010


On Mon, Nov 01, 2010 at 10:54:40PM +0000, Richard Lewis wrote:
> 
> I tried commenting out a line in /etc/pam.d/common-password:
> 
>   #password  requisite                   pam_krb5.so minimum_uid=1000
>   password   [success=1 default=ignore]  pam_unix.so obscure use_authtok try_first_pass sha512
> 
> But I'm not whether: a) this has been effective; or b) would solve the
> problem anyway.

It will have stopped the system from trying to change kerberos
passwords.  You should check the other common-* files in /etc/pam.d for
mention of kerberos.  

Did somebody set this up for you?  How did kerberos come to be specified
in your pam configs if not?

-- 
Bruce

If the universe were simple enough to be understood, we would be too
simple to understand it.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 204 bytes
Desc: Digital signature
URL: <http://mailman.lug.org.uk/pipermail/gllug/attachments/20101102/7caeba78/attachment.pgp>
-------------- next part --------------
-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug


More information about the GLLUG mailing list