|
From: Khan, M. [SMO] <MK...@fr...> - 2006-02-17 05:20:44
|
I don't have that file so shall I create these files, just fyi my server li= nux AS2.1. If I do what shall I put in the file. -----Original Message----- From: web...@li... [mailto:web...@li...]On Behalf Of Jamie Cameron Sent: Thursday, February 16, 2006 5:26 PM To: web...@li... Subject: RE: [webmin-l] Webmin Servers, Broadcast/scan Make sure that in your PAM LDAP config file (/etc/pam_ldap/auth_ldap.conf on my system) that the binddn and rootbinddn parameters are set to your LDAP administration user, and that the passwords in the bindpw parameter and /etc/ldap.secret file are set to match. Otherwise PAM will connect to LDAP as the user who is changing his password, which will generally not be allow= ed. - Jamie On 17/Feb/2006 11:43 Khan, Mohammed [SMO] wrote .. > Jamie, now i am getting this error: > Feb 16 16:36:29 dublx09 l/usermin/changepass/changepass.cgi: pam_ldap: > error trying to bind as user "uid=3Dmkhan,ou=3DPeople, dc=3Dnoam,dc=3Dcor= p,dc=3Dfrk,dc=3Dcom" > (Invalid credentials) >=20 > -----Original Message----- > From: web...@li... > [mailto:web...@li...]On Behalf Of Jamie > Cameron > Sent: Friday, February 17, 2006 2:10 AM > To: web...@li... > Subject: RE: [webmin-l] Webmin Servers, Broadcast/scan >=20 >=20 > Hi, > That looks OK.. > Can LDAP users use the command-line passwd command to change their passwo= rds? >=20 > - Jamie >=20 > -----Original Message----- >=20 > From: "Khan, Mohammed [SMO]" <MK...@fr...> > Subj: RE: [webmin-l] Webmin Servers, Broadcast/scan > Date: Fri 17 Feb 2006 10:07 am > Size: 2K > To: <web...@li...> >=20 > Hi Jamie, > Here is my passwd file: Pls tell me what I am doing worng. > #%PAM-1.0 > password required pam_cracklib.so > password sufficient pam_ldap.so > password sufficient pam_unix.so > password required pam_deny.so >=20 >=20 >=20 > Thanks > Mohammed >=20 > -----Original Message----- > From: web...@li... > [mailto:web...@li...]On Behalf Of Jamie > Cameron > Sent: Thursday, February 16, 2006 2:46 PM > To: web...@li... > Subject: RE: [webmin-l] Webmin Servers, Broadcast/scan >=20 >=20 > Just make sure that /etc/pam.d/passwd is setup to talk to LDAP, and that > Usermin's > Change Password module is setup to use PAM. >=20 > - Jamie >=20 > On 17/Feb/2006 09:42 Khan, Mohammed [SMO] wrote .. > > Hello Jamie,=20 > > Do you know how can I use usermin to change my ldap password. Please > need > > your help. > >=20 > > Thanks > > Mohammed > >=20 > > -----Original Message----- > > From: web...@li... > > [mailto:web...@li...]On Behalf Of Jamie > > Cameron > > Sent: Thursday, February 16, 2006 2:28 PM > > To: web...@li... > > Subject: RE: [webmin-l] Webmin Servers, Broadcast/scan > >=20 > >=20 > > Did you set up /etc/pam.d/usermin as well? My last set of instructions > > only > > mentioned /etc/pam.d/webmin , sorry .. > >=20 > > - Jamie > >=20 > > On 17/Feb/2006 09:25 Khan, Mohammed [SMO] wrote .. > > > Hi Jamie,=20 > > > Sorry to bug u sir. I am still getting the same error when login usi= ng > > > ldap user into usermin. Here is error: > > > Feb 16 14:23:08 dublx09 usermin(pam_unix)[32085]: check pass; user > unknown > > > Feb 16 14:23:08 dublx09 usermin(pam_unix)[32085]: authentication fail= ure; > > > logname=3D uid=3D0 euid=3D0 tty=3D ruser=3D rhost=3D > > >=20 > > > And here is mt .ssh file > > > #%PAM-1.0 > > > auth required /lib/security/pam_securetty.so > > > auth required /lib/security/pam_nologin.so > > > auth required /lib/security/pam_env.so > > > auth sufficient /lib/security/pam_ldap.so > > > auth required /lib/security/pam_unix_auth.so use_first_pass # > set_secrpc > > > account required /lib/security/pam_unix.so > > > account required /lib/security/pam_nologin.so > > > session required /lib/security/pam_unix.so > > > session required /lib/security/pam_limits.so > > >=20 > > >=20 > > > Please lete me know.. > > >=20 > > > Thanks > > >=20 > > > -----Original Message----- > > > From: web...@li... > > > [mailto:web...@li...]On Behalf Of Jamie > > > Cameron > > > Sent: Friday, February 17, 2006 1:04 AM > > > To: web...@li... > > > Subject: RE: [webmin-l] Webmin Servers, Broadcast/scan > > >=20 > > >=20 > > > Hi, >=20 > --- message truncated --- >=20 >=20 >=20 >=20 > ------------------------------------------------------- > This SF.net email is sponsored by: Splunk Inc. Do you grep through log > files > for problems? Stop! Download the new AJAX search engine that makes > searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! > http://sel.as-us.falkag.net/sel?cmd=3Dlnk&kid=3D103432&bid=3D230486&dat= =3D121642 > - > Forwarded by the Webmin mailing list at web...@li....n= et > To remove yourself from this list, go to > http://lists.sourceforge.net/lists/listinfo/webadmin-list >=20 > Notice: All email and instant messages (including attachments) sent to > or from Franklin Templeton Investments (FTI) personnel may be retained, > monitored and/or reviewed by FTI and its agents, or authorized > law enforcement personnel, without further notice or consent. >=20 >=20 > ------------------------------------------------------- > This SF.net email is sponsored by: Splunk Inc. Do you grep through log > files > for problems? Stop! Download the new AJAX search engine that makes > searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! > http://sel.as-us.falkag.net/sel?cmd- > Forwarded by the Webmin mailing list at web...@li....n= et > To remove yourself from this list, go to > http://lists.sourceforge.net/lists/listinfo/webadmin-list ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://sel.as-us.falkag.net/sel?cmd=3Dlnk&kid=3D103432&bid=3D230486&dat=3D1= 21642 - Forwarded by the Webmin mailing list at web...@li... To remove yourself from this list, go to http://lists.sourceforge.net/lists/listinfo/webadmin-list Notice: All email and instant messages (including attachments) sent to or from Franklin Templeton Investments (FTI) personnel may be retained, monitored and/or reviewed by FTI and its agents, or authorized law enforcement personnel, without further notice or consent. |