Date: Fri, 28 Aug 2009 17:20:03 GMT From: "Carlson, Mike" <carlson39@llnl.gov> To: freebsd-ports-bugs@FreeBSD.org Subject: Re: ports/114825: pam module security/pam_abl not working Message-ID: <200908281720.n7SHK3O3017207@freefall.freebsd.org>
next in thread | raw e-mail | index | archive | help
The following reply was made to PR ports/114825; it has been noted by GNATS. From: "Carlson, Mike" <carlson39@llnl.gov> To: "bug-followup@FreeBSD.org" <bug-followup@FreeBSD.org>, "admin@lissyara.su" <admin@lissyara.su> Cc: Subject: Re: ports/114825: pam module security/pam_abl not working Date: Fri, 28 Aug 2009 09:48:42 -0700 --_000_EF83999E0886C848A62369D2AC8588F1C21062D4E0NSPEXMBXAthel_ Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable I just installed pam_abl from both ports/security/pam_able and by package (= pkg_add -r pam_able) on three FreeBSD systems (two are running 7.2, the oth= er is running 8.0-BETA2), and I am have this same problem as previously des= cribed. I used the same settings that Alex Keda had posted on Oct, 4,2007. First, /var/db/pam_abl/users.db and /var/db/pam_abl/hosts.db was not create= d: > ls -la /var/db/pam_abl/ total 4 drwxr-xr-x 2 root wheel 512 Aug 27 14:20 . drwxr-xr-x 11 root wheel 512 Aug 27 14:20 .. here is the output from debug.log: Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_db= =3D/var/db/pam_abl/hosts.db Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_purg= e=3D2d Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_rule= =3D*:10/1h,30/1d Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_db= =3D/var/db/pam_abl/users.db Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_purg= e=3D2d Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_rule= =3D!root:10/1h,30/1d Aug 28 09:37:11 fone pam_abl[84093]: Checking host 192.168.1.100 Aug 28 09:37:11 fone pam_abl[84093]: Checking user mcarlson Output of pam_abl: > pam_abl DEBUG: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db DEBUG: /usr/local/etc/pam_abl.conf: host_purge=3D2d DEBUG: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d DEBUG: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db DEBUG: /usr/local/etc/pam_abl.conf: user_purge=3D2d DEBUG: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d Failed users: Failed hosts: Now, after I 'touch /var/db/pam_abl/users.db ; touch /var/db/pam_abl/hosts.= db': > touch /var/db/pam_abl/users.db ; touch /var/db/pam_abl/hosts.db > ls -la /var/db/pam_abl/ total 4 drwxr-xr-x 2 root wheel 512 Aug 28 09:40 . drwxr-xr-x 11 root wheel 512 Aug 27 14:20 .. -rw-r--r-- 1 root wheel 0 Aug 28 09:40 hosts.db -rw-r--r-- 1 root wheel 0 Aug 28 09:40 users.db Now, I try logging in again: Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_db= =3D/var/db/pam_abl/hosts.db Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_purg= e=3D2d Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_rule= =3D*:10/1h,30/1d Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_db= =3D/var/db/pam_abl/users.db Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_purg= e=3D2d Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_rule= =3D!root:10/1h,30/1d Aug 28 09:40:59 fone pam_abl[84112]: Checking host 192.168.1.100 Aug 28 09:40:59 fone pam_abl[84112]: /var/db/pam_abl/hosts.db opened Aug 28 09:40:59 fone pam_abl[84112]: Checking user mcarlson Aug 28 09:40:59 fone pam_abl[84112]: /var/db/pam_abl/users.db opened But the user and host is never added to either .db file: > pam_abl DEBUG: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db DEBUG: /usr/local/etc/pam_abl.conf: host_purge=3D2d DEBUG: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d DEBUG: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db DEBUG: /usr/local/etc/pam_abl.conf: user_purge=3D2d DEBUG: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d Failed users: <none> Failed hosts: <none> The db files appear to be empty: > db41_dump /var/db/pam_abl/users.db VERSION=3D3 format=3Dbytevalue type=3Dbtree db_pagesize=3D4096 HEADER=3DEND DATA=3DEND > db41_dump /var/db/pam_abl/hosts.db VERSION=3D3 format=3Dbytevalue type=3Dbtree db_pagesize=3D4096 HEADER=3DEND DATA=3DEND Can this ticket be re-opened and re-investigated? Thanks, Mike Carlson carlson39@llnl.gov --_000_EF83999E0886C848A62369D2AC8588F1C21062D4E0NSPEXMBXAthel_ Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable <html xmlns:v=3D"urn:schemas-microsoft-com:vml" xmlns:o=3D"urn:schemas-micr= osoft-com:office:office" xmlns:w=3D"urn:schemas-microsoft-com:office:word" = xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" xmlns=3D"http:= //www.w3.org/TR/REC-html40"> <head> <meta http-equiv=3DContent-Type content=3D"text/html; charset=3Diso-8859-1"= > <meta name=3DGenerator content=3D"Microsoft Word 12 (filtered medium)"> <style> <!-- /* Font Definitions */ @font-face {font-family:"Cambria Math"; panose-1:2 4 5 3 5 4 6 3 2 4;} @font-face {font-family:Calibri; panose-1:2 15 5 2 2 2 4 3 2 4;} /* Style Definitions */ p.MsoNormal, li.MsoNormal, div.MsoNormal {margin:0in; margin-bottom:.0001pt; font-size:11.0pt; font-family:"Calibri","sans-serif";} a:link, span.MsoHyperlink {mso-style-priority:99; color:blue; text-decoration:underline;} a:visited, span.MsoHyperlinkFollowed {mso-style-priority:99; color:purple; text-decoration:underline;} span.EmailStyle17 {mso-style-type:personal-compose; font-family:"Calibri","sans-serif"; color:windowtext;} .MsoChpDefault {mso-style-type:export-only;} @page Section1 {size:8.5in 11.0in; margin:1.0in 1.0in 1.0in 1.0in;} div.Section1 {page:Section1;} --> </style> <!--[if gte mso 9]><xml> <o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" /> </xml><![endif]--><!--[if gte mso 9]><xml> <o:shapelayout v:ext=3D"edit"> <o:idmap v:ext=3D"edit" data=3D"1" /> </o:shapelayout></xml><![endif]--> </head> <body lang=3DEN-US link=3Dblue vlink=3Dpurple> <div class=3DSection1> <p class=3DMsoNormal>I just installed pam_abl from both ports/security/pam_= able and by package (pkg_add –r pam_able) on three FreeBSD systems (two ar= e running 7.2, the other is running 8.0-BETA2), and I am have this same probl= em as previously described. I used the same settings that Alex Keda had posted= on Oct, 4,2007.<o:p></o:p></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>First, /var/db/pam_abl/users.db and /var/db/pam_abl/ho= sts.db was not created:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> ls -la /var/db/pam_abl/<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>total 4<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>drwxr-xr-x=A0=A0 2 root=A0 wheel=A0 512 Aug 27 14:20 .<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>drwxr-xr-x=A0 11 root=A0 wheel=A0 512 Aug 27 14:20 ..<o:p></o:p></span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>here is the output from debug.log:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_purge=3D= 2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_purge=3D= 2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: Checking host 192.168.1.100<o:p></o:p></sp= an></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:37:11 fone pam_abl[84093]: Checking user mcarlson<o:p></o:p></span></= p> <p class=3DMsoNormal>=A0<o:p></o:p></p> <p class=3DMsoNormal>Output of pam_abl:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> pam_abl<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db<o:p></o:p><= /span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_purge=3D2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d<o:p></o:p></span></p= > <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db<o:p></o:p><= /span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_purge=3D2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d<o:p></o:p></span= ></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Failed users:<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Failed hosts:<o:p></o:p></span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>Now, after I ‘touch /var/db/pam_abl/users.db ; t= ouch /var/db/pam_abl/hosts.db’:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> touch /var/db/pam_abl/users.db ; touch /var/db/pam_abl/hosts.db<o:p></o:p><= /span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> ls -la /var/db/pam_abl/<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>total 4<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>drwxr-xr-x=A0=A0 2 root=A0 wheel=A0 512 Aug 28 09:40 .<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>drwxr-xr-x=A0 11 root=A0 wheel=A0 512 Aug 27 14:20 ..<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>-rw-r--r--=A0=A0 1 root=A0 wheel=A0=A0=A0 0 Aug 28 09:40 hosts.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>-rw-r--r--=A0=A0 1 root=A0 wheel=A0=A0=A0 0 Aug 28 09:40 users.db<o:p></o:p></span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>Now, I try logging in again:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_purge=3D= 2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_purge=3D= 2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: Checking host 192.168.1.100<o:p></o:p></sp= an></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /var/db/pam_abl/hosts.db opened<o:p></o:p>= </span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: Checking user mcarlson<o:p></o:p></span></= p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Aug 28 09:40:59 fone pam_abl[84112]: /var/db/pam_abl/users.db opened<o:p></o:p>= </span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>But the user and host is never added to either .db fil= e:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> pam_abl<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_db=3D/var/db/pam_abl/hosts.db<o:p></o:p><= /span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_purge=3D2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: host_rule=3D*:10/1h,30/1d<o:p></o:p></span></p= > <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_db=3D/var/db/pam_abl/users.db<o:p></o:p><= /span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_purge=3D2d<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DEBUG: /usr/local/etc/pam_abl.conf: user_rule=3D!root:10/1h,30/1d<o:p></o:p></span= ></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Failed users:<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>=A0=A0 <none><o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>Failed hosts:<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>=A0=A0 <none><o:p></o:p></span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>The db files appear to be empty:<o:p></o:p></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> db41_dump /var/db/pam_abl/users.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>VERSION=3D3<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>format=3Dbytevalue<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>type=3Dbtree<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>db_pagesize=3D4096<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>HEADER=3DEND<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DATA=3DEND<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>> db41_dump /var/db/pam_abl/hosts.db<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>VERSION=3D3<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>format=3Dbytevalue<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>type=3Dbtree<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>db_pagesize=3D4096<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>HEADER=3DEND<o:p></o:p></span></p> <p class=3DMsoNormal style=3D'margin-left:.5in'><span style=3D'font-family:= "Courier New"'>DATA=3DEND<o:p></o:p></span></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>Can this ticket be re-opened and re-investigated?<o:p>= </o:p></p> <p class=3DMsoNormal><o:p> </o:p></p> <p class=3DMsoNormal>Thanks,<o:p></o:p></p> <p class=3DMsoNormal>Mike Carlson<o:p></o:p></p> <p class=3DMsoNormal>carlson39@llnl.gov<o:p></o:p></p> <p class=3DMsoNormal><o:p> </o:p></p> </div> </body> </html> --_000_EF83999E0886C848A62369D2AC8588F1C21062D4E0NSPEXMBXAthel_--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200908281720.n7SHK3O3017207>