Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 9 May 2006 11:36:29 -0500
From:      "Z.C.B." <vvelox@vvelox.net>
To:        robert <bsd@bathnetworks.com>
Cc:        Atom Powers <atom.powers@gmail.com>, freebsd-questions@freebsd.org, Dominique Goncalves <dominique.goncalves@gmail.com>
Subject:   Re: nsswitch.conf with ldap
Message-ID:  <20060509113629.2c37ea59@vixen42.vulpes>
In-Reply-To: <1147161045.9552.12.camel@localhost.localdomain>
References:  <7daacbbe0601181356q131bc2d7kd044d924e13079f2@mail.gmail.com> <20060507174256.09c33510@vixen42.vulpes> <df9ac37c0605080827i77a836afje0635ef748419e8d@mail.gmail.com> <20060508182308.6e8d9aac@vixen42.vulpes> <df9ac37c0605081631q283c691ah8c9f7af94e683ca3@mail.gmail.com> <20060508184412.4ccbf90c@vixen42.vulpes> <1147161045.9552.12.camel@localhost.localdomain>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, 09 May 2006 08:50:45 +0100
robert <bsd@bathnetworks.com> wrote:

> On Mon, 2006-05-08 at 18:44 -0500, Z.C.B. wrote:
> > On Mon, 8 May 2006 16:31:04 -0700
> > "Atom Powers" <atom.powers@gmail.com> wrote:
> > 
> > > On 5/8/06, Z.C.B. <vvelox@vvelox.net> wrote:
> > > > On Mon, 8 May 2006 08:27:33 -0700
> > > > "Atom Powers" <atom.powers@gmail.com> wrote:
> > > >
> > > > > On 5/7/06, Z.C.B. <vvelox@vvelox.net> wrote:
> > > > > > On Wed, 18 Jan 2006 22:56:09 +0100
> > > > > > Dominique Goncalves <dominique.goncalves@gmail.com> wrote:
> > > > > >
> > > > > > >
> > > > > > > Why FreeBSD tries to use ldap database if my user
> > > > > > > system is on files ? Thanks for the help.
> > > > > >
> > > > > > Did you ever find a fix for this? I am running into the
> > > > > > same thing myself.
> > > > >
> > > > > Check your pam.d configuration,
> > > > > particularly /etc/pam.d/login
> > > >
> > > > Probally a silly question, but how would that help with this
> > > > problem?
> > > >
> > > 
> > > pam controls how each application, including "login" attempts to
> > > authenticate. nss controls how user, host information is looked
> > > up.
> > > 
> > > I don't know if it will help your problem, I'm struggling
> > > through my own pam/nss/ldap issues, but it is a part of the
> > > picture.
> > 
> > I am curious. Do you run into problems with SSH and xterm, but
> > everything else works? That is what I am currently hitting.
> > 
> > initgroups(kitsune,1001): Invalid argument
> > 
> > Is what it is kicking into /var/log/messages. That is right after
> > I authenticate.
> 
> Not sure if this has a bearing on the problem. From the samba by
> example web pages whenrefering to ldap:
> 
> Some Linux systems (Novell SUSE Linux in particular) add entries to
> the nsswitch.conf file that may cause operational problems with the
> configuration methods adopted in this book. It is advisable to
> comment out the entries passwd_compat and group_compat where they
> are found in this file.
> 
> I too have this problem. Logins worked ok with earlier versions. I
> had a setup which worked fine (can't get at the machine at present)
> that had no nis line present on the initial install, but when I
> tried setting up another machine the nis line has appeared. From my
> notes nsswitch.conf looked like this with an earlier version of
> freebsd and worked ok:
> 
> passwd: files ldap
> shadow: files ldap
> group:  files ldap
> hosts:  files dns
> networks: files
> shells: files

I am not using group_compat and passwd_compat with NIS. 

The following works perfectly fine unless I use xterm or ssh. I've
not messed much with pam and ldap yet. I have it setup for auth, but
that is all.

group: files nis
hosts: files dns
networks: files
passwd: files ldap
shells: files



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060509113629.2c37ea59>