<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: How to get PAM LDAP local logins to work when networking is down</title>
	<atom:link href="http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down/feed" rel="self" type="application/rss+xml" />
	<link>http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down</link>
	<description></description>
	<lastBuildDate>Fri, 20 Aug 2010 18:28:34 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: mrmccrac</title>
		<link>http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down/comment-page-1#comment-323</link>
		<dc:creator>mrmccrac</dc:creator>
		<pubDate>Tue, 11 May 2010 13:20:32 +0000</pubDate>
		<guid isPermaLink="false">http://backdrift.org/?p=106#comment-323</guid>
		<description>I&#039;m actually running a version of unscd which may or may not be related to the problem that I wrapped up in my own RPM that I grabbed here:

http://busybox.net/~vda/unscd/

You are not alone in your nscd troubles thats for sure, but this one doesn&#039;t randomly crash on me at least and seems to do its job.  I&#039;m still working on doing more debugging to see whats causing the timeout exactly.  I turned on PAM debugging and the only message I saw was:

May 10 20:52:22 hostname login: pam_localuser(login:account): checking &quot;root:x:0:0:root:/root:/bin/bash &quot;

My /etc/ldap.conf also has:

nss_initgroups_ignoreusers root,ldap,named,avahi,haldaemon,dbus

I&#039;m running RHEL5, and the only want I was able to login to a box where it lost networking (in this case, incorrect default gateway) was to reboot it and choose Interactive startup on boot and disable the networking service entirely.  You could also boot into single user mode as well, but I was unable to get a grub prompt.  This way, I was able to login as root immediately and don&#039;t hit the 60 second timeout.</description>
		<content:encoded><![CDATA[<p>I&#8217;m actually running a version of unscd which may or may not be related to the problem that I wrapped up in my own RPM that I grabbed here:</p>
<p><a href="http://busybox.net/~vda/unscd/" rel="nofollow">http://busybox.net/~vda/unscd/</a></p>
<p>You are not alone in your nscd troubles thats for sure, but this one doesn&#8217;t randomly crash on me at least and seems to do its job.  I&#8217;m still working on doing more debugging to see whats causing the timeout exactly.  I turned on PAM debugging and the only message I saw was:</p>
<p>May 10 20:52:22 hostname login: pam_localuser(login:account): checking &#8220;root:x:0:0:root:/root:/bin/bash &#8221;</p>
<p>My /etc/ldap.conf also has:</p>
<p>nss_initgroups_ignoreusers root,ldap,named,avahi,haldaemon,dbus</p>
<p>I&#8217;m running RHEL5, and the only want I was able to login to a box where it lost networking (in this case, incorrect default gateway) was to reboot it and choose Interactive startup on boot and disable the networking service entirely.  You could also boot into single user mode as well, but I was unable to get a grub prompt.  This way, I was able to login as root immediately and don&#8217;t hit the 60 second timeout.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: keith</title>
		<link>http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down/comment-page-1#comment-321</link>
		<dc:creator>keith</dc:creator>
		<pubDate>Tue, 11 May 2010 01:30:27 +0000</pubDate>
		<guid isPermaLink="false">http://backdrift.org/?p=106#comment-321</guid>
		<description>I try to avoid it, It hasn&#039;t done me any favors and caused me more problems by holding on to stale data than it has helped.  Are you using nscd when you see these problems?  Also, do you see log entries indicating the results of your attempted ldap queries on the system in question?</description>
		<content:encoded><![CDATA[<p>I try to avoid it, It hasn&#8217;t done me any favors and caused me more problems by holding on to stale data than it has helped.  Are you using nscd when you see these problems?  Also, do you see log entries indicating the results of your attempted ldap queries on the system in question?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mrmccrac</title>
		<link>http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down/comment-page-1#comment-320</link>
		<dc:creator>mrmccrac</dc:creator>
		<pubDate>Mon, 10 May 2010 21:22:39 +0000</pubDate>
		<guid isPermaLink="false">http://backdrift.org/?p=106#comment-320</guid>
		<description>I&#039;m having similar problems even w/ setting nss_reconnect options.  Do you run nscd?</description>
		<content:encoded><![CDATA[<p>I&#8217;m having similar problems even w/ setting nss_reconnect options.  Do you run nscd?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
