Hello All,
I am in the process of converting our NIS stuff over to LDAP and have
run into a snag. On the client box, root can su to an ldap user, but
the ldap user is unknown if trying to su from an user other than root
(eg: nobody)
observe below as root can su to Joe Test, but user nobody cannot:
# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # #
#
[ root@lclient1 / ]$ su - jtest
Sun Microsystems Inc. SunOS 5.9 Generic May 2002
bash-2.05$ bash
[ jtest@lclient1 / ]$ exit
bash-2.05$ logout
[ root@lclient1 / ]$ su - nobody
$ bash
[ nobody@lclient1 / ]$ su - jtest
Password:
su: Unknown id: jtest
# # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # # #
#
Anyone know what gives?
Thanks,
bl8n8r
|
|
0
|
|
|
|
Reply
|
bl8n8r
|
5/19/2004 9:32:25 PM |
|
<snip>
>
> Anyone know what gives?
>
> Thanks,
> bl8n8r
Got it working. Just in case anyone else runs into this, in the
iPlanet console, add a "shadowaccount" for every user. This
apparently isn't done by default when you add a user.
User -> Properties -> Advanced -> scroll to "object class" and hilite
-> Add Value -> shadowaccount -> Ok -> Ok ...
|
|
0
|
|
|
|
Reply
|
bl8n8r
|
5/21/2004 1:28:25 PM
|
|
"bad_knee" <bl8n8r@yahoo.com> wrote in message
news:e817ca4d.0405210528.84abc24@posting.google.com...
> <snip>
>
> >
> > Anyone know what gives?
> >
> > Thanks,
> > bl8n8r
>
> Got it working. Just in case anyone else runs into this, in the
> iPlanet console, add a "shadowaccount" for every user. This
> apparently isn't done by default when you add a user.
>
> User -> Properties -> Advanced -> scroll to "object class" and hilite
> -> Add Value -> shadowaccount -> Ok -> Ok ...
Hi, I was trying to experiement with the Solaris LDAP? Do you have a good
source and easy tutorial of installing the packages, how to configure it
,and run it?
I am using just a file based name services(e.g /etc/hosts, /etc/passwd,
/etc/group, etc..) and thinking of using the LDAP directly if possible.
Thanks for your kind help.
|
|
0
|
|
|
|
Reply
|
Sarah
|
5/21/2004 2:28:21 PM
|
|
"Sarah Tanembaum" <sarah.tanembaum@yahoo.com> wrote in message news:<2h6i0aF9d2p4U1@uni-berlin.de>...
> "bad_knee" <bl8n8r@yahoo.com> wrote in message
> news:e817ca4d.0405210528.84abc24@posting.google.com...
<snip>
> Hi, I was trying to experiement with the Solaris LDAP? Do you have a good
> source and easy tutorial of installing the packages, how to configure it
> ,and run it?
>
> I am using just a file based name services(e.g /etc/hosts, /etc/passwd,
> /etc/group, etc..) and thinking of using the LDAP directly if possible.
>
> Thanks for your kind help.
Hi Sarah,
Probably the best thing you could do is snag a copy of
"LDAP in the Solaris Operating Environment" ISBN# 0-13-145693-8
I've found some enlightment here as well:
http://docs.sun.com/db/doc/816-4856/6mb1q0bjk
The book has been the best source of information overall.
good luck.
|
|
0
|
|
|
|
Reply
|
bl8n8r
|
5/21/2004 6:57:43 PM
|
|
|
3 Replies
1196 Views
(page loaded in 0.178 seconds)
Similiar Articles: su problems? - comp.unix.solaris(xlock is simply a screenlock, while CDE & xscreensaver ... Solaris Operating System: Solaris, LDAP and "su: Unknown id ... Only problem is that the ldap/client service ... Unknown id: root but only while su'ing - comp.unix.solaris ...When I try to su to root, I get the following error: % su - Password: su: Unknown id: root % However, I can log on just fine as root at the console,... su password not working - comp.unix.solarisWhen I try to log in as su I get the following error su: Unknown id: root ... Can't SU to ... password expiration not ... for Solaris 9 using LDAP - comp.unix.solaris ... Solaris 9 - Root Password Expired - Can't SU to root. - comp.unix ...Expired Accounts - comp.unix.solaris Solaris 9 - Root Password Expired - Can't SU to root. - comp.unix ... Account expiration for Solaris 9 using LDAP - comp.unix.solaris ... Restrict login account to SU access only??? - comp.sys.sun.admin ...... in to, but I do want them to be able to "su" to. How do you >do this in Solaris ... have to have local account ( not nis,nis+,ldap ... H ow do I lock an account (user login id ... V240 ALOM "Unknown" host - comp.unix.solaris871 console port not working - comp.dcom.sys.cisco V240 ALOM "Unknown" host - comp.unix.solaris ... server 5.2 installation problem - comp.sys.sun ..... su: Unknown id ... Sun ONE directory server 5.2 installation problem - comp.sys.sun ...... authentication failed for url ldap://dcalabd10.domain.com:46403/o=NetscapeRoot user id admin (151:Unknown ... LDAP problem? - comp.unix.solaris Sun ONE directory server 5.2 ... solaris 10 svc in maintenance ? - comp.unix.solarisDec 5 13:10:59 shadow inetd[256]: [ID 702911 ... maps where not correcly configured (bound to ldap ... solaris 10u8 restarter restarted in zone for unknown reason ... solaris ... Incoherent ssh daemon in Solaris 10! - comp.unix.solaris ...Another person for some unknown (to me ... of sshd_config file - comp.unix.solaris Identification of sshd ... LDAP Slapd logging - comp.unix.solaris On our LDAP servers ... get current user name? - comp.unix.programmer... variable, but if a regular > user used su root ... System Error 1326 has occurred Logon failure: unknown ... How to view user's user id and group id? - comp.unix.solaris ... get ... Solaris Operating System: Solaris, LDAP and "su: Unknown id ...software.itags.org: Solaris Operating System question: Solaris, LDAP and "su: Unknown id", created at:Sat, 24 May 2008 23:47:00 GMT with 843 bytes, last updated ... NSS - LDAP ---> su: Unknown id: - The UNIX and Linux Forums... problem with ldap account, Some systems account running properly, but some systems it returns as "su: Unknown id ... host 127.0.0.1, Unknown host localhost - Solaris 10 7/21/2012 8:28:45 PM
|