lists.arthurdejong.org
RSS feed

Re: nss-pam-ldapd

[Date Prev][Date Next] [Thread Prev][Thread Next]

Re: nss-pam-ldapd



On Tue, 2015-10-27 at 20:33 +0000, Ramalingam, Nataraj (RIS-BCT) wrote:
> I am using nss-pam-ldap to authenticate ftp and sftp users. Along
> with username/password I need to validate the client IP address also.
> I have configured my nslcd with the following parameter,
>  
> pam_authz_search (&(objectClass=user)(uid=$username)(host=$rhost))
>  
> I am not getting the hostname in the LDAP service(Apache LDAP). What
> am I missing?

If you run nslcd in debug mode (-d flag) you can see the exact searches
that are performed. It could be that the search is not done due to your
PAM configuration or perhaps the value of rhost is not what you expect.

-- 
-- arthur - arthur@arthurdejong.org - http://arthurdejong.org/ --

-- 
To unsubscribe send an email to
nss-pam-ldapd-users-unsubscribe@lists.arthurdejong.org or see
http://lists.arthurdejong.org/nss-pam-ldapd-users/