-
-
Notifications
You must be signed in to change notification settings - Fork 101
Serwer logs says that is auth but can't login #140
Comments
@PawelConnectio Please check the Quick start section in README especially as it comes to configuring |
@kravietz Do you know what should be setup with TACACS+ CISCO ? Edit: even if set something like service=ppp protocol=ip then in log :
|
@PawelConnectio This message is generated on our side pam_tacplus.c#197 and it is produced when the module didn't get any
Make sure that the file in
|
I'm having the same message... I know I must be doing something wrong but I can't figure it out. The tacacs PAM config also has service and protocol set to ssh/tcp. I've been reading about service and type, both in your README and the RFC but I guess I'm missing what it is saying. As it is, I thought if I had /etc/pam.d/tacacs setup as in your example, but with ssh instead of ppp and tcp instead of ip, then all would be set. For that matter, I tried it as is and setup my tac_plus config to have ppp and ip, but it made no difference. I've used pamtester and there doesn't appear to be an issue. |
|
I do see one difference that is shown in this thread compared to the README. You added this line... |
OK, here is what I've determined. What I discovered is that pam was using the entries made by the apt package installer into the common-account, common-auth, common-password, common-session, and common-session-noninteractive. I guess I don't understand how pam needs to be setup. The documentation in this project said to create a config, which I did, but in my use case, it doesn't work. Can you guide me in how it should be implemented? Do I leave the entries in the common configs and add the server, secret, service, and protocol parameters, or can I use a independent config in /etc/pam.d? If so, how do I enable it? I tried doing pam-auth-update --enable tacplus, but that didn't work. |
Hi ,
on server tacacs+ side i have in log that user is authenticated (when password is correct ,if not i have failed to auth in log). I cant login into server , logs on client site :
Can anybody can help ?
The text was updated successfully, but these errors were encountered: