Score:0

Ubuntu login fails with a user of a trusted IDM domain (AD)

pk flag

We have an IDM Server on a Rocky Linux distro configured with a Trust to a Samba AD DC (also installed on a Rocky Linux).

So we created a user 'usupru2' on Samba AD DC under adtest.uy domain.

Then we enroll an Ubuntu 20.04 client to IDM and when we try to login with '[email protected]' it fails with the message below:

Dec  2 18:05:30 prueba gdm-password]: pam_unix(gdm-password:auth): authentication failure; logname= uid=0 euid=0 tty=/dev/tty1 ruser= rhost= 
Dec  2 18:05:30 prueba gdm-password]: pam_sss(gdm-password:auth): authentication failure; logname= uid=0 euid=0 tty=/dev/tty1 ruser= rhost= [email protected]
Dec  2 18:05:30 prueba gdm-password]: pam_sss(gdm-password:auth): received for user [email protected]: 10 (User not known to the underlying authentication module)

Executing id [email protected] does not work, but kinit does.

On IDM server login with [email protected] works.

Any help is appreciated.

Score:0
pk flag

The cause of this error was that the group (GID) assigned to the user (on creation) didn't exist. So we created it on Samba and now its working properly.

mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.