hi guys
A Putty ssh off a AD's Win10 client to IPA's client (non-master) works with gssapi but without it and when need to use password I see:
pam_sss(sshd:auth): received for user myuser@mine.private: 6 (Permission denied)
To make it more bizarre, that same Win10 client does ssh with password(and gssapi) to IPA's masters just fine.
My IPA is pretty "vanilla" default after AD trust installation.
Any suggestions as to a cause of this misbehavior of IPA clients?
many thanks, L.
On 20/06/2019 13:47, lejeczek via FreeIPA-users wrote:
hi guys
A Putty ssh off a AD's Win10 client to IPA's client (non-master) works with gssapi but without it and when need to use password I see:
pam_sss(sshd:auth): received for user myuser@mine.private: 6 (Permission denied)
To make it more bizarre, that same Win10 client does ssh with password(and gssapi) to IPA's masters just fine.
My IPA is pretty "vanilla" default after AD trust installation.
Any suggestions as to a cause of this misbehavior of IPA clients?
many thanks, L.
hi, I've realized that did not mention possibly important bit - the users I need this (password) to work, who fail with "permission denied", are from AD.
On Fri, Jun 21, 2019 at 08:57:39AM +0100, lejeczek via FreeIPA-users wrote:
On 20/06/2019 13:47, lejeczek via FreeIPA-users wrote:
hi guys
A Putty ssh off a AD's Win10 client to IPA's client (non-master) works with gssapi but without it and when need to use password I see:
pam_sss(sshd:auth): received for user myuser@mine.private: 6 (Permission denied)
To make it more bizarre, that same Win10 client does ssh with password(and gssapi) to IPA's masters just fine.
My IPA is pretty "vanilla" default after AD trust installation.
Any suggestions as to a cause of this misbehavior of IPA clients?
many thanks, L.
hi, I've realized that did not mention possibly important bit - the users I need this (password) to work, who fail with "permission denied", are from AD.
Hi,
this is the same issue we are talking about in the other thread, right?
bye, Sumit
pub rsa2048 2019-01-17 [SC] [verfällt: 2020-01-17] 93059F241EEEE1D0769A85F455918ABF21224EBA uid lejeczek peljasz@yahoo.co.uk sub rsa2048 2019-01-17 [E] [verfällt: 2020-01-17]
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahoste...
On 21/06/2019 09:26, Sumit Bose via FreeIPA-users wrote:
On Fri, Jun 21, 2019 at 08:57:39AM +0100, lejeczek via FreeIPA-users wrote:
On 20/06/2019 13:47, lejeczek via FreeIPA-users wrote:
hi guys
A Putty ssh off a AD's Win10 client to IPA's client (non-master) works with gssapi but without it and when need to use password I see:
pam_sss(sshd:auth): received for user myuser@mine.private: 6 (Permission denied)
To make it more bizarre, that same Win10 client does ssh with password(and gssapi) to IPA's masters just fine.
My IPA is pretty "vanilla" default after AD trust installation.
Any suggestions as to a cause of this misbehavior of IPA clients?
many thanks, L.
hi, I've realized that did not mention possibly important bit - the users I need this (password) to work, who fail with "permission denied", are from AD.
Hi,
this is the same issue we are talking about in the other thread, right?
Correct, I thought I'd start a new subject and make it more telling. It is the same issue.
bye, Sumit
pub rsa2048 2019-01-17 [SC] [verfällt: 2020-01-17] 93059F241EEEE1D0769A85F455918ABF21224EBA uid lejeczek peljasz@yahoo.co.uk sub rsa2048 2019-01-17 [E] [verfällt: 2020-01-17] _______________________________________________ FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahoste...
FreeIPA-users mailing list -- freeipa-users@lists.fedorahosted.org To unsubscribe send an email to freeipa-users-leave@lists.fedorahosted.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedorahosted.org/archives/list/freeipa-users@lists.fedorahoste...
freeipa-users@lists.fedorahosted.org