Bug 604084 - Can't log in with AD/Kerberos authentication
Summary: Can't log in with AD/Kerberos authentication
Keywords:
Status: CLOSED INSUFFICIENT_DATA
Alias: None
Product: Fedora
Classification: Fedora
Component: gdm
Version: 13
Hardware: All
OS: Linux
low
medium
Target Milestone: ---
Assignee: jmccann
QA Contact: Fedora Extras Quality Assurance
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2010-06-15 11:46 UTC by Chris Kloiber
Modified: 2015-01-14 23:25 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Clone Of:
Environment:
Last Closed: 2010-07-07 10:43:57 UTC
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Chris Kloiber 2010-06-15 11:46:55 UTC
Description of problem:
Have been authenticating against a Win2k3 AD domain for some time now. Today As I clicked my user name I was presented with the message that my password would expire in 12 days. No problem, I'll just log in and change the password. Unfortunately, my login would not work. I had to log into a real Windows system to change the password (it had not already expired) and change the password there before I could log in through GDM again.

Version-Release number of selected component (if applicable):
gdm-2.30.2-1.fc13.i686
samba-winbind-3.5.3-61.fc13.i686
samba-winbind-clients-3.5.3-61.fc13.i686
krb5-auth-dialog-0.15-1.fc13.i686
krb5-libs-1.7.1-10.fc13.i686
pam_krb5-2.3.11-1.fc13.i686
krb5-devel-1.7.1-10.fc13.i686
krb5-workstation-1.7.1-10.fc13.i686

How reproducible:
n/a

Steps to Reproduce:
1. Join Win2k3 domain
2. Wait until password expiration message appears.
3. Try to log in.
  
Actual results:
Can't log in.

Expected results:
Can log in, and change domain password.

Comment 1 Tajidin Abdullah 2010-07-07 07:52:28 UTC
Were you able to reproduce this error or was it simply a configuration problem?



-- 
Fedora Bugzappers volunteer triage team
https://fedoraproject.org/wiki/BugZappers

Comment 2 Chris Kloiber 2010-07-07 08:53:55 UTC
Can't reproduce it again until the password is about to expire again (roughly 9/15/2010). I don't control the AD domain at work.

Comment 3 Tajidin Abdullah 2010-07-07 10:43:57 UTC

-- 
Fedora Bugzappers volunteer triage team
https://fedoraproject.org/wiki/BugZappers


Note You need to log in before you can comment on or make changes to this bug.