Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 09 May 2006 08:50:45 +0100
From:      robert <bsd@bathnetworks.com>
To:        "Z.C.B." <vvelox@vvelox.net>
Cc:        Atom Powers <atom.powers@gmail.com>, freebsd-questions@freebsd.org, Dominique Goncalves <dominique.goncalves@gmail.com>
Subject:   Re: nsswitch.conf with ldap
Message-ID:  <1147161045.9552.12.camel@localhost.localdomain>
In-Reply-To: <20060508184412.4ccbf90c@vixen42.vulpes>
References:  <7daacbbe0601181356q131bc2d7kd044d924e13079f2@mail.gmail.com> <20060507174256.09c33510@vixen42.vulpes> <df9ac37c0605080827i77a836afje0635ef748419e8d@mail.gmail.com> <20060508182308.6e8d9aac@vixen42.vulpes> <df9ac37c0605081631q283c691ah8c9f7af94e683ca3@mail.gmail.com> <20060508184412.4ccbf90c@vixen42.vulpes>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, 2006-05-08 at 18:44 -0500, Z.C.B. wrote:
> On Mon, 8 May 2006 16:31:04 -0700
> "Atom Powers" <atom.powers@gmail.com> wrote:
> 
> > On 5/8/06, Z.C.B. <vvelox@vvelox.net> wrote:
> > > On Mon, 8 May 2006 08:27:33 -0700
> > > "Atom Powers" <atom.powers@gmail.com> wrote:
> > >
> > > > On 5/7/06, Z.C.B. <vvelox@vvelox.net> wrote:
> > > > > On Wed, 18 Jan 2006 22:56:09 +0100
> > > > > Dominique Goncalves <dominique.goncalves@gmail.com> wrote:
> > > > >
> > > > > >
> > > > > > Why FreeBSD tries to use ldap database if my user system is
> > > > > > on files ? Thanks for the help.
> > > > >
> > > > > Did you ever find a fix for this? I am running into the same
> > > > > thing myself.
> > > >
> > > > Check your pam.d configuration, particularly /etc/pam.d/login
> > >
> > > Probally a silly question, but how would that help with this
> > > problem?
> > >
> > 
> > pam controls how each application, including "login" attempts to
> > authenticate. nss controls how user, host information is looked up.
> > 
> > I don't know if it will help your problem, I'm struggling through my
> > own pam/nss/ldap issues, but it is a part of the picture.
> 
> I am curious. Do you run into problems with SSH and xterm, but
> everything else works? That is what I am currently hitting.
> 
> initgroups(kitsune,1001): Invalid argument
> 
> Is what it is kicking into /var/log/messages. That is right after I
> authenticate.

Not sure if this has a bearing on the problem. From the samba by example
web pages whenrefering to ldap:

Some Linux systems (Novell SUSE Linux in particular) add entries to the
nsswitch.conf file that may cause operational problems with the
configuration methods adopted in this book. It is advisable to comment
out the entries passwd_compat and group_compat where they are found in
this file.

I too have this problem. Logins worked ok with earlier versions. I had a
setup which worked fine (can't get at the machine at present) that had
no nis line present on the initial install, but when I tried setting up
another machine the nis line has appeared. From my notes nsswitch.conf
looked like this with an earlier version of freebsd and worked ok:

passwd: files ldap
shadow: files ldap
group:  files ldap
hosts:  files dns
networks: files
shells: files

Now without the compat: nis line logins fail.

Rob  




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1147161045.9552.12.camel>