> It does not seem to recognize the user in the secan attempt but the
> first attempt seems to authenticate and then disconnect.
> I do not see trace from accounting session but I suspect that your pam
> stack does not authorize authenticated user.
> Try to allow all authenticated users first. This will prove that it is a
> pam stack accounting phase configuration issue.
>
> --
> Thank you,
> Dmitri Pal
>
> Sr. Engineering Manager IdM portfolio
> Red Hat, Inc.
>
> --
> Manage your subscription for the Freeipa-users mailing list:
> https://www.redhat.com/mailman/listinfo/freeipa-users
> Go To http://freeipa.org for more info on the project
>

I'm not sure how to enable a trace for an accounting session.

Here is what I've done to enable debugging so far :
add the following line to /etc/syslog.conf
*.debug /var/log/pam_log
svcadm restart system-log
touch /etc/pam_debug
cat "debug_flags=65535" > /etc/pam_debug

I have a little more debugging info now than before, but it still stops at
the krb5 line.  See below for more detailed log.


Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: Client protocol version 2.0; client software
version PuTTY_Release_0.63
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: no match: PuTTY_Release_0.63
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: Enabling compatibility mode for protocol 2.0
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: Local version string SSH-2.0-OpenSSH_6.6
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: permanently_set_uid: 100/65534 [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: list_hostkey_types:
ssh-rsa,ssh-dss,ecdsa-sha2-nistp256,ssh-ed25519 [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_KEXINIT sent [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_KEXINIT received [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: kex: client->server aes256-ctr hmac-sha2-256
none [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: kex: server->client aes256-ctr hmac-sha2-256
none [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_KEX_DH_GEX_REQUEST_OLD received
[preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_KEX_DH_GEX_GROUP sent [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: expecting SSH2_MSG_KEX_DH_GEX_INIT [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_KEX_DH_GEX_REPLY sent [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_NEWKEYS sent [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: expecting SSH2_MSG_NEWKEYS [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: SSH2_MSG_NEWKEYS received [preauth]
Feb 25 22:53:02 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: KEX done [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: userauth-request for user ipauser1 service
ssh-connection method none [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: attempt 0 failures 0 [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: PAM: initializing for "ipauser1"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
489767 auth.debug] PAM[938]: pam_start(sshd,ipauser1,811c170:812b8e0) -
debug = ffff
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
984622 auth.debug] PAM[938]: pam_set_item(812b8e0:service)=sshd
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
984622 auth.debug] PAM[938]: pam_set_item(812b8e0:user)=ipauser1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
984619 auth.debug] PAM[938]: pam_set_item(812b8e0:conv)=8086ff8
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
960046 auth.debug] PAM[938]: pam_get_item(812b8e0:service)=sshd
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth requisite    
     pam_authtok_get.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth required     
     pam_dhkeys.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth sufficient   
     pam_krb5.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth required     
     pam_unix_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    login   auth required     
     pam_dial_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    rlogin  auth requisite    
     pam_authtok_get.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    rlogin  auth required     
     pam_dhkeys.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    rlogin  auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    rlogin  auth required     
     pam_unix_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    krlogin auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    krlogin auth required     
     pam_krb5.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    rsh     auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    krsh    auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    krsh    auth required     
     pam_krb5.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ktelnet auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ktelnet auth required     
     pam_krb5.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ppp     auth requisite    
     pam_authtok_get.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ppp     auth required     
     pam_dhkeys.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ppp     auth required     
     pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ppp     auth required     
     pam_unix_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    ppp     auth required     
     pam_dial_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   auth requisite    
     pam_authtok_get.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
216047 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding first
other[auth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   auth required     
     pam_dhkeys.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[auth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   auth required     
     pam_unix_cred.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[auth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   auth sufficient   
     pam_krb5.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[auth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   auth required     
     pam_unix_auth.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[auth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    passwd  auth sufficient   
     pam_passwd_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    passwd  auth required     
     pam_krb5.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    cron    account required  
     pam_unix_account.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   account sufficient
     pam_krb5.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
216047 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding first
other[account]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   account requisite 
     pam_roles.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[account]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   account required  
     pam_unix_account.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[account]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   session required  
     pam_mkhomedir.so.1 skel=/etc/skel/ umask=0027 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
216047 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding first
other[session]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   session required  
     pam_unix_session.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[session]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   password required 
     pam_dhkeys.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
216047 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding first
other[password]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   password requisite
     pam_authtok_get.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[password]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   password requisite
     pam_authtok_check.so.1 force_check
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[password]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   password
sufficient     pam_krb5.so.1 debug
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[password]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
102344 auth.debug] PAM[938]: pam.conf entry:    other   password required 
     pam_authtok_store.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
531506 auth.debug] PAM[938]: read_pam_conf(812b8e0): processing "other"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
287990 auth.debug] PAM[938]: read_pam_conf(812b8e0): adding more
other[password]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: PAM: setting PAM_RHOST to "10.5.5.57"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
984622 auth.debug] PAM[938]: pam_set_item(812b8e0:rhost)=10.5.5.57
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: PAM: setting PAM_TTY to "ssh"
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
984622 auth.debug] PAM[938]: pam_set_item(812b8e0:tty)=ssh
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: userauth-request for user ipauser1 service
ssh-connection method keyboard-interactive [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: attempt 1 failures 0 [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: keyboard-interactive devs  [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: auth2_challenge: user=ipauser1 devs= [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: kbdint_alloc: devices 'pam' [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.debug] debug1: auth2_challenge_start: trying authentication
method 'pam' [preauth]
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
960046 auth.debug] PAM[938]: pam_get_item(812b8e0:user)=ipauser1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:user)=ipauser1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
791083 auth.debug] PAM[940]: pam_set_item(812b8e0:conv)=80868e8
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
135072 auth.debug] PAM[940]: pam_authenticate(812b8e0, 1)
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
881946 auth.debug] PAM[940]: load_modules(812b8e0,
pam_sm_authenticate)=/usr/lib/security/pam_authtok_get.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
396308 auth.debug] PAM[940]: load_function: successful load of
pam_sm_authenticate
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
881946 auth.debug] PAM[940]: load_modules(812b8e0,
pam_sm_authenticate)=/usr/lib/security/pam_dhkeys.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
396308 auth.debug] PAM[940]: load_function: successful load of
pam_sm_authenticate
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
881946 auth.debug] PAM[940]: load_modules(812b8e0,
pam_sm_authenticate)=/usr/lib/security/pam_unix_cred.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
396308 auth.debug] PAM[940]: load_function: successful load of
pam_sm_authenticate
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
881946 auth.debug] PAM[940]: load_modules(812b8e0,
pam_sm_authenticate)=/usr/lib/security/pam_krb5.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
396308 auth.debug] PAM[940]: load_function: successful load of
pam_sm_authenticate
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
881946 auth.debug] PAM[940]: load_modules(812b8e0,
pam_sm_authenticate)=/usr/lib/security/pam_unix_auth.so.1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
396308 auth.debug] PAM[940]: load_function: successful load of
pam_sm_authenticate
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
634615 auth.debug] pam_authtok_get:pam_sm_authenticate: flags = 1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
679169 auth.debug] PAM[940]: pam_get_user(812b8e0, 812b8e0, NULL)
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:user)=ipauser1
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:authtok)=NULL
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:repository)=NULL
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766507 auth.debug] PAM[940]: pam_get_item(812b8e0:conv)=80868e8
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
340417 auth.debug] PAM[940]: pam_conv_msg(812b8e0:1[0]=Password: )
Feb 25 22:53:05 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[938]: [ID
800047 auth.info] Postponed keyboard-interactive for ipauser1 from
10.5.5.57 port 60559 ssh2 [preauth]
Feb 25 22:53:06 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[538]: [ID
800047 auth.debug] debug1: server_input_channel_req: channel 0 request
win...@putty.projects.tartarus.org reply 1
Feb 25 22:53:06 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[538]: [ID
800047 auth.debug] debug1: session_by_channel: session 0 channel 0
Feb 25 22:53:06 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[538]: [ID
800047 auth.debug] debug1: session_input_channel_req: session 0 req
win...@putty.projects.tartarus.org
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
314604 auth.debug] PAM[940]: pam_conv_resp(812b8e0 pam_conv = Success)
ret_respp = 80477b4
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
569401 auth.debug] PAM[940]: pam_conv_resp(812b8e0:[0] len=8, code=0)
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:authtok)=NULL
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
791086 auth.debug] PAM[940]: pam_set_item(812b8e0:authtok)=********
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net last message
repeated 1 time
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
736554 auth.debug] PAM[940]: pam_authenticate(812b8e0, 1):
/usr/lib/security/pam_authtok_get.so.1 returned Ignore module
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:user)=ipauser1
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:authtok)=********
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:repository)=NULL
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
736554 auth.debug] PAM[940]: pam_authenticate(812b8e0, 1):
/usr/lib/security/pam_dhkeys.so.1 returned Ignore module
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
736554 auth.debug] PAM[940]: pam_authenticate(812b8e0, 1):
/usr/lib/security/pam_unix_cred.so.1 returned Ignore module
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
655841 auth.debug] PAM-KRB5 (auth): pam_sm_authenticate flags=1
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:user)=ipauser1
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
706257 auth.debug] PAM[940]:
pam_get_data(812b8e0:SUNW-KRB5-AUTH-DATA)=PAM_NO_MODULE_DATA
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
286919 auth.debug] PAM[940]:
pam_set_data(812b8e0:SUNW-KRB5-AUTH-DATA:2)=813c0f0
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:repository)=NULL
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
766510 auth.debug] PAM[940]: pam_get_item(812b8e0:authtok)=********
Feb 25 22:53:15 ipaclient5-sandbox-atdev-van.ipadomain.net sshd[940]: [ID
549540 auth.debug] PAM-KRB5 (auth): attempt_krb5_auth: start:
user='ipauser1'



-- 
Manage your subscription for the Freeipa-users mailing list:
https://www.redhat.com/mailman/listinfo/freeipa-users
Go To http://freeipa.org for more info on the project

Reply via email to