[TriLUG] Kerberos and Linux

Dane Miller dane at olneyfriends.org
Mon Mar 13 14:25:12 EST 2006


This would be really cool if I could answer a Q minutes after joining
the list :)

Steve Hoffman wrote:
> in /etc/pam.d/system-auth, I moved krb5.so over unix.so so kerberos is tried
> first so my file starts off like this:
> 
> auth        required      /lib/security/$ISA/pam_env.so
> auth        sufficient    /lib/security/$ISA/pam_krb5.so
> auth        sufficient    /lib/security/$ISA/pam_unix.so likeauth nullok

How about adding "use_first_pass" to the end of your pam_unix.so line.

Dane
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <http://www.trilug.org/pipermail/trilug/attachments/20060313/559ad1a5/attachment.pgp>


More information about the TriLUG mailing list