Hi Jakub, SSSD prompted to change the password. After changing the password, when we try to ssh again using the new password, it failed.
*Best Regards,__________________________________________* *Yogesh Sharma* *Email: yks0...@gmail.com <yks0...@gmail.com> | Web: www.initd.in <http://www.initd.in>* RHCE, VCE-CIA, RackSpace Cloud U [image: My LinkedIn Profile] <http://in.linkedin.com/in/yks0000> On Thu, Mar 26, 2015 at 7:55 PM, Jakub Hrozek <jhro...@redhat.com> wrote: > On Thu, Mar 26, 2015 at 07:47:34PM +0530, Yogesh Sharma wrote: > > Once I manually initialize the user Ticket on IPA Server using kinit > > username, I am able to login with and without FQDN. > > It's expected that IPA users are created with expired password. But SSSD > should have prompted you for a password change if you logged in the > first time you logged in with the expired password...as seen from the > krb5_child.log, it got the correct response from the KDC.. > > -- > Manage your subscription for the Freeipa-users mailing list: > https://www.redhat.com/mailman/listinfo/freeipa-users > Go to http://freeipa.org for more info on the project >
-- Manage your subscription for the Freeipa-users mailing list: https://www.redhat.com/mailman/listinfo/freeipa-users Go to http://freeipa.org for more info on the project