- Community Home
- >
- Servers and Operating Systems
- >
- Operating Systems
- >
- Operating System - HP-UX
- >
- Problem setting ldap-ux client
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-17-2009 08:27 AM
тАО11-17-2009 08:27 AM
Problem setting ldap-ux client
I'm setting up ldap-ux client under hpux 11.31, but I getting a error authenticating with ssh. Connecting to ssh ask me 2 times for the password (The password is correct).
Example using putty to the ux box:
login as: user
Using keyboard-interactive authentication.
Password:
Using keyboard-interactive authentication.
LDAP Password:
And never get logged to the system.
I'm using Fedora Directory Server 1.0 as Ldap server.
However I can do "su" with the same ldap user without problems. I got the complete listing of users from the directory with pwget.
pam_ldap is configured in /etc/pam.conf and nsswitch for use ldap.
I turned on debugging for ldapclientd and got this messages:
Nov 17 12:51:23 rx2ka sshd[12653]: pid:12653 - ldapd_client.c:195:_hp_ldap_client_cache_daemon_is_up():
Nov 17 12:51:23 rx2ka syslog: pid:27197 - ldap_common.c:2104:_hp_ldap_bind_ux(): _hp_ldap_build_cred() returned:-2.
Nov 17 12:51:23 rx2ka syslog: pid:27197.13 - pam_request.c:152:process_pam_ldap_request(): _hp_ldap_bind_ux() failed, err=-2
Nov 17 12:51:23 rx2ka syslog: pid:27197 - ldap_common.c:2650:_hp_ldap_endent():
Nov 17 12:51:23 rx2ka syslog: pid:27197 - ldap_common.c:3230:_hp_ldap_unbind(): disposition:FREE HANDLE.
Nov 17 12:51:23 rx2ka syslog: pid:27197 - ldap_common.c:2688:_hp_ldap_free_cur_msg():
Nov 17 12:51:24 rx2ka above message repeats 4 times
Nov 17 12:51:24 rx2ka syslog: pid:27197 - ldap_common.c:2650:_hp_ldap_endent():
Nov 17 12:51:24 rx2ka syslog: pid:27197 - ldap_common.c:2688:_hp_ldap_free_cur_msg():
Nov 17 12:51:24 rx2ka sshd[12653]: PAM_LDAP auth-bind got HP_LDAP_NOTFOUND
I'm using:
LdapUxClient B.04.20 LDAP-UX Client Services
Somebody has a similar problem? Any help will be apreciated.
Best regards.
Diego.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-17-2009 09:04 AM
тАО11-17-2009 09:04 AM
Re: Problem setting ldap-ux client
Secure Shell, openssh does not integrate easily with LDAP. The standard version will require login, but then respect the LDAP server on permissions and such.
You will probably have to recompile openssh from source to integrate it with LDAP and make it stop demanding passwords.
SEP
Owner of ISN Corporation
http://isnamerica.com
http://hpuxconsulting.com
Sponsor: http://hpux.ws
Twitter: http://twitter.com/hpuxlinux
Founder http://newdatacloud.com
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-17-2009 09:31 AM
тАО11-17-2009 09:31 AM
Re: Problem setting ldap-ux client
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-18-2009 09:27 AM
тАО11-18-2009 09:27 AM
Re: Problem setting ldap-ux client
The -2 indicates the specified user name was not found in LDAP. So that likely means a configuration problem.
LDAP-UX can do some basic configuraiton assesment. Run the command /opt/ldapux/bin/ldapcfinfo.
/opt/ldapux/bin/ldapcfinfo -t passwd
/opt/ldapux/bin/ldapcfinfo -t pam
Then, assuming success above try
pwget -n
If that doesn't help, review the output of /opt/ldapux/config/display_profile_cache. That tells you how LDAP-UX performs search operations. See if you can replicate a search operation using ldapsearch.
/opt/ldapux/bin/ldapsearch -h
Good luck.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-18-2009 09:29 AM
тАО11-18-2009 09:29 AM
Re: Problem setting ldap-ux client
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-18-2009 09:50 AM
тАО11-18-2009 09:50 AM
Re: Problem setting ldap-ux client
Best regards.
Diego.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
тАО11-18-2009 09:51 AM
тАО11-18-2009 09:51 AM