Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >
article

KB-4585: dzdo failing with error unable to initialize PAM: "There is no destination address for the socket operation" or "A file or directory in the path name does not exist"

Centrify DirectControl ,  

12 April,16 at 11:47 AM

Applies to:

All versions of Centrify DirectControl.


Problem:

dzdo  fails with the following error:

"unable to initialize PAM: There is no destination address for the socket operation"
 or
"unable to initialize PAM: a file or directory in the path name does not exist"

 
Extract of debug centrifydc.log:

security:alert /usr/share/centrifydc/libexec/dzdo PAM: 
open_pam_conf: /etc/pam.conf writable by group 
 
Cause:

The error found in the log:

" /etc/pam.conf writable by group" shows that the /etc/pam.conf permission is not safe thus the system failed the pam calling from dzdo,
 
Generally, the /etc/pam.conf is owned by root and not writable by group.

In this particular case, the permissions of /etc/pam.conf were modified to allow group to write and so when dzdo calls pam_open, it failed or got sysalertmsg..

Resolution:

The permission of  /etc/pam.conf file needs to be '600' or '644' and then centrifydc should be restarted.


# chmod 644 /etc/pam.conf

Still have questions? Click here to log a technical support case, or collaborate with your peers in Centrify's Online Community.