Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-12 Thread Volker Potworowski
Hallo zusammen, am Dienstag, 12. Oktober 2010 schrieb Stephen Gallagher: > > I think your URI is wrong... (sssd.conf) > > > > ldap_uri = ldap://ldap.teraphim.de > > should be > > ldap_uri = ldap://ldap.teraphim.de/ > > This shouldn't make a difference in SSSD. If you see that one of those > work

Success! password change does not work: LDAP, sssd, nss or pam error?

2010-10-11 Thread Volker Potworowski
> access to * by * write Brilliant idea! When I had only this ACL I still got the "write access denied". It turned out that I had my ACLs below the database monitor directive. Changed that and - success... Cheers Volker -- users mailing list users@lists.fedoraproject.org To unsubscribe or

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-10 Thread Volker Potworowski
> > Is there another option I should enable? > > No, in sssd.conf all you need for enabling password changes is to have > chpass_provider=ldap and the ldap_uri set correctly. > > As seen in other replies to this thread, the problem is due to the ACIs > on your OpenLDAP server. The client is confi

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-09 Thread Volker Potworowski
Hallo zusammen, > Suggest that you change > them to something like this... Thanks for your suggestion. I changed them to: access to attrs=userPassword by dn.base="cn=Manager,dc=teraphim,dc=de" write by anonymous auth by self write by * none access to dn.regex="^u

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-09 Thread Volker Potworowski
Hallo zusammen, am Samstag, 9. Oktober 2010 schrieb Gordon Messmer: > On 10/06/2010 01:28 PM, Volker Potworowski wrote: > > I have the directive > > pam_password exop > > in /etc/ldap.conf. Hope this is enough (but doesn't work anyway). > > sss doesn't

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-09 Thread Volker Potworowski
Hallo zusammen, am Samstag, 9. Oktober 2010 schrieb Gordon Messmer: > At a minimum, we'd need all of the ACLs from your configuration file. > It'd be best to post the whole thing, minus any passwords that appear > therein. Thanks for helping. Here is my slapd.conf. Configuration is as I said qui

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-07 Thread Volker Potworowski
> > So again: Is there somebody out there using an OpenLDAP server / clients > > completely on Fedora 13 + can the users change their LDAP-Passwords? > > > I agree with you that it really shouldn't make any difference which LDAP > server you are using and I am presuming that this 'user' is tr

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-07 Thread Volker Potworowski
Hello Matthew, am Donnerstag, 7. Oktober 2010 schrieb Matthew J. Roth: > Volker Potworowski wrote: > > Is there somebody out there using an OpenLDAP server / clients > > completely on Fedora 13 + can the users change their LDAP-Passwords? > Have a look at the 389 Direct

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-07 Thread Volker Potworowski
Hallo zusammen, am Donnerstag, 7. Oktober 2010 schrieb Stephen Gallagher: > This is a server-side configuration issue. Probably you want to be > asking on the openldap-software mailing list. However, a quick Google > search revealed this thread which is likely relevant to you: > http://www.openld

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-07 Thread Volker Potworowski
Hi, am Donnerstag, 7. Oktober 2010 schrieb Rick Stevens: > > Yes, and I think what you need is something like: > > access to attrs=userPassword > by dn="cn=manager,dc=teraphim,dc=de" write > by anonymous auth > by self write > by * no

Re: password change does not work: LDAP, sssd, nss or pam error?

2010-10-06 Thread Volker Potworowski
Hallo zusammen, am Mittwoch, 6. Oktober 2010 schrieb Stephen Gallagher: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > On 10/06/2010 08:28 AM, Volker Potworowski wrote: > > Oct 6 12:18:43 thal passwd: pam_sss(passwd:chauthtok): Password change > > failed fo

password change does not work: LDAP, sssd, nss or pam error?

2010-10-06 Thread Volker Potworowski
Hi everyone, last week I switched my small home network from NIS to OpenLDAP (I am running Fedora 13 on all machines). Everything went fine except the ability to change LDAP user passords. When I try to change the password as a (LADP-) user on a client I get #> passwd Changing password for use