Tips for finding Knowledge Articles

  • - Enter just a few key words related to your question or problem
  • - Add Key words to refine your search as necessary
  • - Do not use punctuation
  • - Search is not case sensitive
  • - Avoid non-descriptive filler words like "how", "the", "what", etc.
  • - If you do not find what you are looking for the first time,reduce the number of key words you enter and try searching again.
  • - Minimum supported Internet Explorer version is IE9
Home  >
article

KB-9250: Local users in user.ignore but are unable to login on an HPUX 11.11 server

Centrify DirectControl ,   Centrify DirectControl Plugins ,  

29 September,17 at 03:01 PM

Problem:
Local users have been added to the user.ignore file but are unable to log into the HPUX 11.11 server. They can log into all other servers without an issue.

Cause:

This is caused by the version of ssh that comes with the older versions of HPUX. The pam.conf shows that there aren't any authentication/session/password entries for the  sshd service.

Resolution:
Add the following lines to the /etc/pam.conf file:

sshd	 auth sufficient 	/usr/lib/security/libpam_unix.1  use_first_pass debug
sshd	 auth required 	/usr/lib/security/libpam_ldap.1 use_first_pass
sshd	 session sufficient	/usr/lib/security/libpam_unix.1 
sshd	 session required	/usr/lib/security/libpam_ldap.1
sshd	 password sufficient	/usr/lib/security/libpam_unix.1  try_first_pass
sshd	 password required	/usr/lib/security/libpam_ldap.1 use_first_pass 

and the restart the sshd service.

Still have questions? Click here to log a technical support case, or collaborate with your peers in Centrify's Online Community.