General
cancel
Showing results for 
Search instead for 
Did you mean: 

HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

F Verschuren
Esteemed Contributor

HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

we have installed this product and it works fine whit telnet, but if we try whit ssh it does not seems to work.

If I lissen to the radius server (tcpdump) I do not see annything when using ssh, telnet of ofcause is visable.
the auth part of the pam.conf file looks like:
login auth sufficient libpam_radius.so.1 debug default_realm=atosorigin.com
login auth required libpam_unix.so.1 try_first_pass
su auth sufficient libpam_radius.so.1
su auth required libpam_unix.so.1 try_first_pass
dtlogin auth sufficient libpam_radius.so.1
dtlogin auth required libpam_unix.so.1 try_first_pass
dtaction auth sufficient libpam_radius.so.1
dtaction auth required libpam_unix.so.1 try_first_pass
ftp auth sufficient libpam_radius.so.1
ftp auth required libpam_unix.so.1 try_first_pass
sshd auth sufficient libpam_radius.so.1 debug default_realm=atosorigin.com
sshd auth required libpam_unix.so.1 debug try_first_pass

Please advice
4 REPLIES
F Verschuren
Esteemed Contributor

Re: HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

does anny body have a working hp server that works whit radius and ssh, if so please post your pam.conf file(s) and ssh_config file so I can learn form it.
we are running the laatste ssh version
Steven E. Protter
Exalted Contributor

Re: HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

Shalom,

ssh requires authentication. To bypass this with ADS or radius, it must be recompiled.

I am not sure what you mean by "work with" in your question. Please define your goal.

SEP
Steven E Protter
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com
F Verschuren
Esteemed Contributor

Re: HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

tanks, we will recompile ssh, is there a instruckion what parameters neets be be tweeked?
F Verschuren
Esteemed Contributor

Re: HP-UX-PAM-RADIUS_A.01.00.00_HP-UX_B.11.31 does not work whit ssh

I was using a IP adresses in /etc/raddb/server
After changing it to the full qualefide domain name.
ssh and radius workt fine. (found this in a other form:

It appears this may be a bug in the 64-bit version of the libpam_radius.so.1 shared object.