[Samba] Samba AD DC on a trust relationship with IdM - kpasswd not working porperly

Rowland Penny rpenny at samba.org
Thu Apr 21 15:16:32 UTC 2022


On Thu, 2022-04-21 at 10:42 -0300, Mateo Duffour wrote:
> I'm  referring to this error, log using journalctl:
> 
> Apr 13 09:15:37 idmsrvpru02.idmpru.fnr.gub.uy krb5_child[2110]:
> Password has expired
> Apr 13 09:15:37 idmsrvpru02.idmpru.fnr.gub.uy krb5_child[2110]: KDC
> reply did not match expectations
> Apr 13 09:15:37 idmsrvpru02.idmpru.fnr.gub.uy sshd[2108]:
> pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0
> tty=ssh ruser= rhost=10.9.9.5 user=usu1 at adtest.fnr.gub.uy
> Apr 13 09:15:37 idmsrvpru02.idmpru.fnr.gub.uy sshd[2108]:
> pam_sss(sshd:auth): received for user usu1 at adtest.fnr.gub.uy: 4
> (System error)
> Apr 13 09:15:39 idmsrvpru02.idmpru.fnr.gub.uy sshd[2106]: error: PAM:
> Authentication failure for usu1 at adtest.fnr.gub.uy from 10.9.9.5

As I said before, that is NOT coming from Samba, it appears to have
something to do with sssd, I suggest you contact the sssd-users mailing
list.

Also, please do not CC me on replies, just send any replies to the
list.

Rowland





More information about the samba mailing list