[slurm-users] Re: Temporarily bypassing pam_slurm_adopt.so

2024-07-09 Thread Timony, Mick via slurm-users
All other users should be denied to get access from all sources. - :ALL:ALL Kind regards Mick -- From: Paul Edmon via slurm-users Sent: Tuesday, July 9, 2024 9:34 AM To: slurm-users@lists.schedmd.com Subject: [slurm-users] Re: Temporarily bypassing pam_slurm_ad

[slurm-users] Re: Temporarily bypassing pam_slurm_adopt.so

2024-07-09 Thread Paul Edmon via slurm-users
We do this by adding groups/users to /etc/security/access.conf That should grant normal ssh access assuming you still have pam_access.so still in your sshd config.  Note that if the user has a job on the node, slurm will still shunt them into that job even with the access.conf setting.  So when

[slurm-users] Re: Temporarily bypassing pam_slurm_adopt.so

2024-07-08 Thread Chris Taylor via slurm-users
On my Rocky9 cluster I got this to work fine also- Added at the end of /etc/pam.d/sshd: accountsufficientpam_listfile.so item=user sense=allow onerr=fail file=/etc/slurm/allowed_users_file accountrequired pam_slurm_adopt.so I added a couple of usernames to /etc/slurm/allowed_us

[slurm-users] Re: Temporarily bypassing pam_slurm_adopt.so

2024-07-08 Thread David Schanzenbach via slurm-users
Hi Daniel, Utilizing pam_access  with pam_slurm_adopt might be what you are looking for? https://slurm.schedmd.com/pam_slurm_adopt.html#admin_access Thanks, David On 7/8/2024 10:54 AM, Daniel L'Hommedieu via slurm-users wrote: Hi, all. We have a use case where we need to allow a group of us