Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >

KB-1674: AD user unable to run crontab on Fedora 10/11/12/13

Auditing and Monitoring Service ,   Authentication Service ,   Mac & PC Management Service ,  

12 April,16 at 11:45 AM

Applies to:

DirectControl 4.3.x and 4.4.x on Fedora Core 10/11/12/13


Running crontab -l as an AD user results in the following error message:

Authentication token is no longer valid; new one required
You (AD_User) are not allowed to access to (crontab) because of pam configuration.


Starting Fedora Core 10, Fedora changed pam stack for many services to use substack of password-auth which does not include system-auth.

Note: A new command authconfig has been introduced, running this command will re-write password-auth, as well as system-auth - wiping out Centrify related pam changes.


Log on to the machine, su to root and execute the below commands:

cd /etc/pam.d
cp system-auth system-auth-centrifydc
cp system-auth password-auth-centrifydc
rm password-auth
rm system-auth
ln -s system-auth-centrifydc system-auth
ln -s password-auth-centrifydc password-auth


This issue will be fixed in the future release of DirectControl.