Guillaume CHARDIN schreef: > Problem is solved... After some hours looking around... > Although i follow your advices because my pam config look like dirty. > (for info, the ldapsearch thing worked fine i've tested it before) > Now I start to read really carrefully the pam manual, but some > concepts are still hard to understand ! :) Good to hear. Yes, pam is sometimes like sorcery... > > > The main issue after that was linked to a typing error :-( > In /etc/pam_ldap.conf > I type > pam_filter objectclass=posxAccount > instead of : pos[i]xAccount !! You didn't just use the standard file created when you reconfigure pam-ldap? Brave... > > Now authentication works fine. BTW i don't know if you are familiar > with configuring openldap auth on debian but I create a link from > pam_ldap.conf ---> libnss_ldap.conf to have an easier config. What do > you think about that ? Is that a good practice ? I'm not that familiar. I think these files should usually be the same. And the same as /etc/ldap/ldap.conf, which usually does nothing. > > Thanks for your help ! No problem!
Sjoerd
signature.asc
Description: OpenPGP digital signature