Re: [Freeipa-users] unable to authenticate using freeipa client
yes the space was indeed the culprit... i cleaned up some and login works fine now.. Thanks !! On Tue, Mar 15, 2016 at 1:55 PM, Sumit Bose wrote: > On Mon, Mar 14, 2016 at 05:50:34PM +0530, Rakesh Rajasekharan wrote: > > I set up freeipa in my environment and works perfectly. > > > > But just on one host , I am not able to authenticate. I get a permission > > denied eror. > > > > The sssd version I have is 1.12 > > > > the krb5_child log does point to some error, > > krb5_child.log > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > > (0x2000): No old ccache > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > > (0x0100): ccname: [FILE:/tmp/krb5cc_5102_XX] old_ccname: [not set] > > keytab: [/etc/krb5.keytab] > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > > [k5c_precreate_ccache] (0x4000): Recreating ccache > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [k5c_setup_fast] > > (0x0100): SSSD_KRB5_FAST_PRINCIPAL is set to [host/1.1@test.com] > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > > [find_principal_in_keytab] (0x4000): Trying to find principal host/ > > 1.1@test.com in keytab. > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [match_principal] > > (0x1000): Principal matched to the sample (host/1.1@test.com). > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [get_tgt_times] > > (0x1000): FAST ccache must be recreated > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > > (0x0200): Trying to become user [0][0]. > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > > (0x0200): Already user [0]. > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 > [check_fast_ccache] > > (0x2000): Running as [0][0]. > > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 > > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to > [true] > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11864 [create_ccache] > > (0x4000): Initializing ccache of type [FILE] > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [check_fast_ccache] > > (0x0200): FAST TGT was successfully recreated! > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [become_user] > > (0x0200): Trying to become user [5102][701]. > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x2000): > > Running as [5102][701]. > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [k5c_setup] > > (0x2000): Running as [5102][701]. > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [set_lifetime_options] (0x0100): Cannot read > [SSSD_KRB5_RENEWABLE_LIFETIME] > > from environment. > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_LIFETIME] from > > environment. > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to > [true] > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x0400): > > Will perform online auth > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [tgt_req_child] > > (0x1000): Attempting to get a TGT > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [get_and_save_tgt] > > (0x0400): Attempting kinit for realm [TEST.COM] > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18425: Getting > > initial credentials for q-tempu...@test.com > > > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18471: FAST armor > > ccache: MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > > > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18502: Retrieving > > host/1.1@test.com -> krb5_ccache_conf_data/fast_avail/krbtgt\/ > TEST.COM > > \@TEST.COM@X-CACHECONF: from MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > > with result: -1765328243/Matching credential not found > > > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18545: Sending > > request (189 bytes) to TEST.COM > > > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.187.36: Initiating > > TCP connection to stre > > (END) > > Does the krb5_child.log really ends here? If yes, any change the disk is > full? > > bye, > Sumit > > > > > > > And here are the contents from sssd_domain.log > > sssd_test.com > > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] > (0x0100): > > domain: test.com > > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] > (0x0100): > > user: q-tempuser > > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] > (0x0100): > > service: sshd > > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] > (0x0100): > > tty:
Re: [Freeipa-users] unable to authenticate using freeipa client
On Mon, Mar 14, 2016 at 05:50:34PM +0530, Rakesh Rajasekharan wrote: > I set up freeipa in my environment and works perfectly. > > But just on one host , I am not able to authenticate. I get a permission > denied eror. > > The sssd version I have is 1.12 > > the krb5_child log does point to some error, > krb5_child.log > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > (0x2000): No old ccache > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > (0x0100): ccname: [FILE:/tmp/krb5cc_5102_XX] old_ccname: [not set] > keytab: [/etc/krb5.keytab] > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > [k5c_precreate_ccache] (0x4000): Recreating ccache > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [k5c_setup_fast] > (0x0100): SSSD_KRB5_FAST_PRINCIPAL is set to [host/1.1@test.com] > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > [find_principal_in_keytab] (0x4000): Trying to find principal host/ > 1.1@test.com in keytab. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [match_principal] > (0x1000): Principal matched to the sample (host/1.1@test.com). > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [get_tgt_times] > (0x1000): FAST ccache must be recreated > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > (0x0200): Trying to become user [0][0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > (0x0200): Already user [0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [check_fast_ccache] > (0x2000): Running as [0][0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11864 [create_ccache] > (0x4000): Initializing ccache of type [FILE] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [check_fast_ccache] > (0x0200): FAST TGT was successfully recreated! > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [become_user] > (0x0200): Trying to become user [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x2000): > Running as [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [k5c_setup] > (0x2000): Running as [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_RENEWABLE_LIFETIME] > from environment. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_LIFETIME] from > environment. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x0400): > Will perform online auth > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [tgt_req_child] > (0x1000): Attempting to get a TGT > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [get_and_save_tgt] > (0x0400): Attempting kinit for realm [TEST.COM] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18425: Getting > initial credentials for q-tempu...@test.com > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18471: FAST armor > ccache: MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18502: Retrieving > host/1.1@test.com -> krb5_ccache_conf_data/fast_avail/krbtgt\/TEST.COM > \@TEST.COM@X-CACHECONF: from MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > with result: -1765328243/Matching credential not found > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18545: Sending > request (189 bytes) to TEST.COM > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.187.36: Initiating > TCP connection to stre > (END) Does the krb5_child.log really ends here? If yes, any change the disk is full? bye, Sumit > > > And here are the contents from sssd_domain.log > sssd_test.com > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > domain: test.com > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > user: q-tempuser > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > service: sshd > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > tty: ssh > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > ruser: > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > rhost: 127.0.0.1 > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): > authtok type: 1 > (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100):
Re: [Freeipa-users] unable to authenticate using freeipa client
For the error in the krb5_child.log (Tue Mar 15 04:35:51 2016) [[sssd[krb5_child[13708 [sss_child_krb5_trace_cb] (0x4000): [13708] 1458016551.87210: Received error from KDC: -1765328359/Additional pre-authentication required I deleted the sssd cache as well as the /tmp/krb5* and restarted sssd , still the issue persists. Another error that I see is in /var/log/secure Mar 14 21:35:51 ip-1-1-1-1 sshd[13705]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=127.0.0.1 user=q-tempuser Mar 14 21:35:51 ip-1-1-1-1 sshd[13705]: pam_sss(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=127.0.0.1 user=q-tempuser Mar 14 21:35:51 ip-1-1-1-1 sshd[13705]: pam_sss(sshd:auth): received for user q-tempuser: 4 (System error) I have "UsePAM yes" and "GSSAPIAuthentication yes" in sshd_config. so not sure whats causing this.. I tried uninstalling and installing back the client as well but did not help.. Anything else that I might be missing out.. Thanks, Rakesh On Mon, Mar 14, 2016 at 5:50 PM, Rakesh Rajasekharan < rakesh.rajasekha...@gmail.com> wrote: > I set up freeipa in my environment and works perfectly. > > But just on one host , I am not able to authenticate. I get a permission > denied eror. > > The sssd version I have is 1.12 > > the krb5_child log does point to some error, > krb5_child.log > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > (0x2000): No old ccache > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] > (0x0100): ccname: [FILE:/tmp/krb5cc_5102_XX] old_ccname: [not set] > keytab: [/etc/krb5.keytab] > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > [k5c_precreate_ccache] (0x4000): Recreating ccache > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [k5c_setup_fast] > (0x0100): SSSD_KRB5_FAST_PRINCIPAL is set to [host/1.1@test.com] > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 > [find_principal_in_keytab] (0x4000): Trying to find principal host/ > 1.1@test.com in keytab. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [match_principal] > (0x1000): Principal matched to the sample (host/1.1@test.com). > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [get_tgt_times] > (0x1000): FAST ccache must be recreated > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > (0x0200): Trying to become user [0][0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] > (0x0200): Already user [0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [check_fast_ccache] > (0x2000): Running as [0][0]. > (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11864 [create_ccache] > (0x4000): Initializing ccache of type [FILE] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [check_fast_ccache] > (0x0200): FAST TGT was successfully recreated! > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [become_user] > (0x0200): Trying to become user [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x2000): > Running as [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [k5c_setup] > (0x2000): Running as [5102][701]. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_RENEWABLE_LIFETIME] > from environment. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_LIFETIME] from > environment. > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x0400): > Will perform online auth > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [tgt_req_child] > (0x1000): Attempting to get a TGT > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [get_and_save_tgt] > (0x0400): Attempting kinit for realm [TEST.COM] > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18425: Getting > initial credentials for q-tempu...@test.com > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18471: FAST armor > ccache: MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18502: Retrieving > host/1.1@test.com -> krb5_ccache_conf_data/fast_avail/krbtgt\/TEST.COM > \@TEST.COM@X-CACHECONF: from MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM > with result: -1765328243/Matching credential not found > > (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 > [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18545: Sending > request (189 bytes) to TEST.COM >
[Freeipa-users] unable to authenticate using freeipa client
I set up freeipa in my environment and works perfectly. But just on one host , I am not able to authenticate. I get a permission denied eror. The sssd version I have is 1.12 the krb5_child log does point to some error, krb5_child.log (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] (0x2000): No old ccache (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [unpack_buffer] (0x0100): ccname: [FILE:/tmp/krb5cc_5102_XX] old_ccname: [not set] keytab: [/etc/krb5.keytab] (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [k5c_precreate_ccache] (0x4000): Recreating ccache (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [k5c_setup_fast] (0x0100): SSSD_KRB5_FAST_PRINCIPAL is set to [host/1.1@test.com] (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [find_principal_in_keytab] (0x4000): Trying to find principal host/ 1.1@test.com in keytab. (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [match_principal] (0x1000): Principal matched to the sample (host/1.1@test.com). (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11862 [get_tgt_times] (0x1000): FAST ccache must be recreated (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] (0x0200): Trying to become user [0][0]. (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [become_user] (0x0200): Already user [0]. (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [check_fast_ccache] (0x2000): Running as [0][0]. (Mon Mar 14 12:02:27 2016) [[sssd[krb5_child[11864 [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11864 [create_ccache] (0x4000): Initializing ccache of type [FILE] (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [check_fast_ccache] (0x0200): FAST TGT was successfully recreated! (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [become_user] (0x0200): Trying to become user [5102][701]. (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x2000): Running as [5102][701]. (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [k5c_setup] (0x2000): Running as [5102][701]. (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_RENEWABLE_LIFETIME] from environment. (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [set_lifetime_options] (0x0100): Cannot read [SSSD_KRB5_LIFETIME] from environment. (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [set_canonicalize_option] (0x0100): SSSD_KRB5_CANONICALIZE is set to [true] (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [main] (0x0400): Will perform online auth (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [tgt_req_child] (0x1000): Attempting to get a TGT (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [get_and_save_tgt] (0x0400): Attempting kinit for realm [TEST.COM] (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18425: Getting initial credentials for q-tempu...@test.com (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18471: FAST armor ccache: MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18502: Retrieving host/1.1@test.com -> krb5_ccache_conf_data/fast_avail/krbtgt\/TEST.COM \@TEST.COM@X-CACHECONF: from MEMORY:/var/lib/sss/db/fast_ccache_TEST.COM with result: -1765328243/Matching credential not found (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.18545: Sending request (189 bytes) to TEST.COM (Mon Mar 14 12:02:28 2016) [[sssd[krb5_child[11862 [sss_child_krb5_trace_cb] (0x4000): [11862] 1457956948.187.36: Initiating TCP connection to stre (END) And here are the contents from sssd_domain.log sssd_test.com (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): domain: test.com (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): user: q-tempuser (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): service: sshd (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): tty: ssh (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): ruser: (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): rhost: 127.0.0.1 (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): authtok type: 1 (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): newauthtok type: 0 (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): priv: 1 (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): cli_pid: 11794 (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [pam_print_data] (0x0100): logon name: not set (Mon Mar 14 11:57:12 2016) [sssd[be[test.com]]] [ldb] (0x4000): Added