Monday, August 1, 2022

[389-users] Login problems.

Hi all,

I've been following the quickstart guide at :

https://www.port389.org/docs/389ds/howto/quickstart.html

My environment is Rocky Linux 9, on 3 KVM virtual machines.
The machines are :

192.168.122.1 host machine
192.168.122.2 frontend
192.168.122.3 exec1
192.168.122.4 exec2

I have DNS running on frontend so that all the machines can resolve each
other in the DNS domain .cluster, so frontend.cluster etc.

The two exec nodes have firewalls enabled, but frontend currently has it
disabled (to aid in debugging).

Following the quickstart I have got to the point where I can ssh to
frontend as alice, but not as eve. However trying to replicate the setup
on exec1, but pointing at the ldap on frontend leads to an odd situation
where I can't login as alice, but su to alice from root works, and id
alice returns the correct uid.

I copied over /etc/openldap/ldap.conf and /etc/sssd/sssd.conf from
frontend to exec1.

I have however only installed the 389-ds packages on frontend, as I
assumed that you would only need them on the server machine.

Any clues as to what might be wrong here?

Cheers.

Phill.
_______________________________________________
389-users mailing list -- 389-users@lists.fedoraproject.org
To unsubscribe send an email to 389-users-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/389-users@lists.fedoraproject.org
Do not reply to spam on the list, report it: https://pagure.io/fedora-infrastructure

No comments:

Post a Comment