Re: kdesktop_lock won't authenticate against AD[Scanned]



Marcelo Magno T. Sales wrote:
Hi,

My FC5 / KDE box is part of a Windows 2000 domain. I've configured it to authenticate login credentials against Active Directory and it's working well. However, when I lock the desktop (manually or via password protected screen saver), I can not unlock it if the logged in user is an Active Directory user. kdesktop_lock fails with the following message:
"Cannot unlock the session because the authentication system feiled to work; you must kill kdesktop_lock (pid_of_process) manually"

A local user can unlock the desktop without problems.

Any idea about what may be causing this?
Here is may pam configuration for kcheckpass (/etc/pam.d/kcheckpass):
#%PAM-1.0
auth sufficient pam_timestamp.so
auth include system-auth
account required pam_nologin.so
account include system-auth
password include system-auth
session include system-auth
session required pam_loginuid.so
session optional pam_timestamp.so
session optional pam_selinux.so
session optional pam_console.so

Also, /usr/bin/kcheckpass permisions are set as 4755.

Thanks,

Marcelo

So the authentication to AD works? Can you post your /etc/pam.d/system-auth file as this is called by /etc/pam.d/kcheckpass.

Thanks,

-Chris


This message has been scanned for viruses by BlackSpider MailControl - www.blackspider.com

--
fedora-list mailing list
fedora-list@xxxxxxxxxx
To unsubscribe: https://www.redhat.com/mailman/listinfo/fedora-list



Relevant Pages

  • kdesktop_lock wont authenticate against AD
    ... authenticate login credentials against Active Directory and it's working ... "Cannot unlock the session because the authentication system feiled to work; ... account include system-auth ...
    (Fedora)
  • Re: kdesktop_lock wont authenticate against AD
    ... authenticate login credentials against Active Directory and it's working ... I can not unlock it if the logged in user is an Active ... auth sufficient pam_timestamp.so ... account include system-auth ...
    (Fedora)
  • Re: LDAP?
    ... Your suggestion on integrating Active Directory and MS Access sounds good. ... >>If you mean you want to try and integrate it with Access security, ... > adopted to use any sort of authentication method you choose, ... then launches the real database and logs into the Access ...
    (microsoft.public.access.security)
  • Re: Please Help
    ... controller that handles authentication for the computers in the domain. ... Logon and logoff are a little difficult with Active Directory. ... Use the Event logs. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Basic Authentication + IIS 5 + Windows 2000 + Frontpage 2002 = failure?
    ... Authentication" story and can relate to them all. ... the introduction of Active Directory. ... All rights ... > | Vincent Polite ...
    (microsoft.public.inetserver.iis.security)