troubleshooting Question

Problems with SSH and ADS authentication

Avatar of jchauncey60
jchauncey60Flag for United States of America asked on
Server SoftwareLinux NetworkingNetwork Operations
9 Comments1 Solution2431 ViewsLast Modified:
Environment: RedHat Linux RHEL4, Windows 2003 SP1, SAMBA 3

I have SAMBA (winbind) authenticating users from the console against active directory.  However I am unable to get SSHD to authenticate user that are located in ADS.  For local users, those in passwd, sshd lets them right in.

The error I am seeing in /etc/var/messages is:
<date> <node> sshd[pid]: pam_ldap: ldap_search_s Operations error
<date> <node> sshd[pid]: pam_krb5[pid]: error getting information about '<username>'

getent passwrd returns the list of users from the domain
getent group returns the list of groups from the domain
wbinfo -u returns the users
wbinfo -g returns the groups
net ads testjoin returns Join is OK

Help...I need to get SSH working.

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Log in to continue reading
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform for $9.99/mo
View membership options
Unlock 1 Answer and 9 Comments.
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
See how we're fighting big data
The Value of Experts Exchange in My Daily IT Life

Experts Exchange (EE) has become my company's go-to resource to get answers. I've used EE to make decisions, solve problems and even save customers. OutagesIO has been a challenging project and... Keep reading >>


Owner of Outages.IO
Phoenix, Arizona, United States
Member Since 2016
Join a full scale community that combines the best parts of other tools into one platform.
Unlock 1 Answer and 9 Comments.
View membership options
“All of life is about relationships, and EE has made a virtual community a real community. It lifts everyone's boat.”
William Peck

Member since 2004