Running domainjoin-cli on my system, I end up with the following in /etc/pam.d/common-auth:
# here are the per-package modules (the "Primary" block) auth [success=2 default=ignore] pam_krb5.so minimum_uid=1000 auth sufficient pam_lwidentity.so auth [success=1 default=ignore] pam_unix.so nullok_secure try_first_pass # here's the fallback if no module succeeds auth requisite pam_deny.so # prime the stack with a positive return value if there isn't one already; # this avoids us returning an error just because nothing sets a success code # since the modules above will each just jump around auth required pam_permit.so This, of course, is not the intended behavior... Yes, I think we need to fix this for Ubuntu by implementing support for pam-auth-update. -- Fails to join a domain: Unknown pam configuration https://bugs.launchpad.net/bugs/262264 You received this bug notification because you are a member of Ubuntu Server Team, which is subscribed to likewise-open in ubuntu. -- Ubuntu-server-bugs mailing list Ubuntu-server-bugs@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs