Summary: | Cannot authenticate on a LDAP directory | ||
---|---|---|---|
Product: | kscreensaver | Reporter: | aurelien grosdidier <agrosdidier> |
Component: | kcheckpass | Assignee: | kscreensaver bugs tracking <kscreensaver-bugs-null> |
Status: | RESOLVED NOT A BUG | ||
Severity: | normal | CC: | lecit |
Priority: | NOR | ||
Version: | unspecified | ||
Target Milestone: | --- | ||
Platform: | Fedora RPMs | ||
OS: | Linux | ||
Latest Commit: | Version Fixed In: |
Description
aurelien grosdidier
2006-04-24 09:45:18 UTC
you wouldn't believe it, but we actually do this. :) please report a packaging bug against fedora. Oswald, the setuid mask causes the problem if you uses pam_krb5 for pam backends to authenticate. ------- Relevant /var/log/messages ------ Jun 21 10:45:02 xt23 kcheckpass: pam_krb5[27538]: TGT verified using key for 'host/xt23.mth.udmn.de@MTH.UDMN.DE' Jun 21 10:45:02 xt23 kcheckpass: pam_krb5[27538]: authentication succeeds for 'mad' (mad@MTH.UDMN.DD) Jun 21 10:45:02 xt23 kcheckpass: pam_krb5[27538]: won't refresh credentials while running setuid/setgid Do you know why pam_ldap requires root priviliges? It seems a conflict here. |