From owner-freebsd-ports-bugs@FreeBSD.ORG Thu Oct 4 11:30:09 2007 Return-Path: Delivered-To: freebsd-ports-bugs@hub.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 0E4E416A41B for ; Thu, 4 Oct 2007 11:30:09 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (freefall.freebsd.org [IPv6:2001:4f8:fff6::28]) by mx1.freebsd.org (Postfix) with ESMTP id E363813C481 for ; Thu, 4 Oct 2007 11:30:08 +0000 (UTC) (envelope-from gnats@FreeBSD.org) Received: from freefall.freebsd.org (gnats@localhost [127.0.0.1]) by freefall.freebsd.org (8.14.1/8.14.1) with ESMTP id l94BU8OJ039307 for ; Thu, 4 Oct 2007 11:30:08 GMT (envelope-from gnats@freefall.freebsd.org) Received: (from gnats@localhost) by freefall.freebsd.org (8.14.1/8.14.1/Submit) id l94BU8b3039296; Thu, 4 Oct 2007 11:30:08 GMT (envelope-from gnats) Date: Thu, 4 Oct 2007 11:30:08 GMT Message-Id: <200710041130.l94BU8b3039296@freefall.freebsd.org> To: freebsd-ports-bugs@FreeBSD.org From: Alex Keda Cc: Subject: Re: ports/114825: pam module security/pam_abl not working X-BeenThere: freebsd-ports-bugs@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list Reply-To: Alex Keda List-Id: Ports bug reports List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 04 Oct 2007 11:30:09 -0000 The following reply was made to PR ports/114825; it has been noted by GNATS. From: Alex Keda To: bug-followup@FreeBSD.org, admin@lissyara.su Cc: Subject: Re: ports/114825: pam module security/pam_abl not working Date: Thu, 04 Oct 2007 15:29:17 +0400 It not work. radius# tail -f /var/log/all.log Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: host_db=/var/db/pam_abl/hosts.db Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: host_purge=2d Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: host_rule=*:10/1h,30/1d Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: user_db=/var/db/pam_abl/users.db Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: user_purge=2d Oct 4 15:24:53 radius pam_abl[40711]: /usr/local/etc/pam_abl.conf: user_rule=!root:10/1h,30/1d Oct 4 15:24:53 radius pam_abl[40711]: Checking host lissyara.domain.local Oct 4 15:24:53 radius pam_abl[40711]: Checking user lissyara Oct 4 15:24:54 radius sshd[40709]: error: PAM: authentication error for lissyara from lissyara.domain.local Oct 4 15:24:54 radius kernel: Oct 4 15:24:54 radius sshd[40709]: error: PAM: authentication error for lissyara from lissyara.domain.local Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: host_db=/var/db/pam_abl/hosts.db Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: host_purge=2d Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: host_rule=*:10/1h,30/1d Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: user_db=/var/db/pam_abl/users.db Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: user_purge=2d Oct 4 15:24:54 radius pam_abl[40712]: /usr/local/etc/pam_abl.conf: user_rule=!root:10/1h,30/1d Oct 4 15:24:54 radius pam_abl[40712]: Checking host lissyara.domain.local Oct 4 15:24:54 radius pam_abl[40712]: Checking user lissyara Oct 4 15:24:54 radius sshd[40709]: error: PAM: authentication error for lissyara from lissyara.domain.local Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: host_db=/var/db/pam_abl/hosts.db Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: host_purge=2d Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: host_rule=*:10/1h,30/1d Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: user_db=/var/db/pam_abl/users.db Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: user_purge=2d Oct 4 15:24:54 radius pam_abl[40713]: /usr/local/etc/pam_abl.conf: user_rule=!root:10/1h,30/1d Oct 4 15:24:54 radius pam_abl[40713]: Checking host lissyara.domain.local Oct 4 15:24:54 radius pam_abl[40713]: Checking user lissyara Oct 4 15:24:54 radius sshd[40709]: error: PAM: authentication error for lissyara from lissyara.domain.local radius# uname -a FreeBSD radius.domain.local 6.2-RELEASE FreeBSD 6.2-RELEASE #0: Fri Jan 12 11:05:30 UTC 2007 root@dessler.cse.buffalo.edu:/usr/obj/usr/src/sys/SMP i386 radius# diff -Nru /etc/pam.d/sshd.orig /etc/pam.d/sshd --- /etc/pam.d/sshd.orig Thu Oct 4 15:18:02 2007 +++ /etc/pam.d/sshd Thu Oct 4 15:19:53 2007 @@ -10,6 +10,7 @@ auth requisite pam_opieaccess.so no_warn allow_local #auth sufficient pam_krb5.so no_warn try_first_pass #auth sufficient pam_ssh.so no_warn try_first_pass +auth required /usr/local/lib/pam_abl.so config=/usr/local/etc/pam_abl.conf auth required pam_unix.so no_warn try_first_pass radius# more /usr/local/etc/pam_abl.conf # /usr/local/etc/pam_abl.conf debug host_db=/var/db/pam_abl/hosts.db host_purge=2d host_rule=*:10/1h,30/1d user_db=/var/db/pam_abl/users.db user_purge=2d user_rule=!root:10/1h,30/1d radius# ll /var/db/pam_abl/ total 0 radius#