J'essaie de configurer NSCD pour connecter des utilisateurs ldap à mon PC.
J'aime bien que les utilisateurs puissent se connecter hors ligne dans ces PC (les utilisateurs ldap en ligne fonctionnent bien).
En fait, je peux utiliser l'utilisateur, mais quand j'essaie d'introduire le mot de passe, le PC attend et finalement, il dit que le mot de passe est incorrect.
Je pense, que le mot de passe de cache est le problème parce que, l'utilisateur accepte très rapidement et si je nettoie le cache nscd l'utilisateur est faux.
C'est mon nscd.conf
logfile /var/log/nscd.log
server-user nscd
debug-level 0
paranoia no
restart-interval 3600
enable-cache passwd yes
positive-time-to-live passwd 3600
negative-time-to-live passwd 20
suggested-size passwd 211
check-files passwd yes
persistent passwd yes
shared passwd yes
max-db-size passwd 33554432
auto-propagate passwd yes
enable-cache group yes
positive-time-to-live group 3600
negative-time-to-live group 60
suggested-size group 211
check-files group yes
persistent group yes
shared group yes
max-db-size group 33554432
auto-propagate group yes
enable-cache hosts no
Et mon authconfig --test
authconfig --test:
caching is enabled
nss_files is always enabled
nss_compat is disabled
nss_db is disabled
nss_hesiod is disabled
hesiod LHS = ""
hesiod RHS = ""
nss_ldap is enabled
LDAP+TLS is disabled
LDAP server = "ldap://xxxxxxxxxxxxxxxx"
LDAP base DN = "dc=xxxxxxxxxxxxxxx,dc=xxx"
nss_nis is disabled
NIS server = ""
NIS domain = ""
nss_nisplus is disabled
nss_winbind is disabled
SMB workgroup = "MYGROUP"
SMB servers = ""
SMB security = "user"
SMB realm = ""
Winbind template shell = "/bin/false"
SMB idmap uid = "16777216-33554431"
SMB idmap gid = "16777216-33554431"
nss_sss is disabled by default
nss_wins is disabled
pam_unix is always enabled
shadow passwords are enabled
password hashing algorithm is md5
pam_krb5 is disabled
krb5 realm = "EXAMPLE.COM"
krb5 realm via dns is disabled
krb5 kdc = "kerberos.example.com:88"
krb5 kdc via dns is disabled
krb5 admin server = "kerberos.example.com:749"
pam_ldap is enabled
LDAP+TLS is disabled
LDAP server = "ldap://xxxxxxxxxxxxxxxxxx"
LDAP base DN = "dc=xxxxxxxxxxxxxxxxxxxx,dc=xxxxx"
pam_pkcs11 is disabled
use only smartcard for login is disabled
smartcard module = "coolkey"
smartcard removal action = "Ignorar"
pam_smb_auth is disabled
SMB workgroup = "MYGROUP"
SMB servers = ""
pam_winbind is disabled
SMB workgroup = "MYGROUP"
SMB servers = ""
SMB security = "user"
SMB realm = ""
pam_sss is disabled by default
pam_cracklib is enabled (try_first_pass retry=3)
pam_passwdqc is disabled ()
pam_access is disabled ()
pam_mkhomedir is disabled ()
Always authorize local users is disabled ()
Authenticate system accounts against network services is disabled
Si quelqu'un a une idée, qu'il me réponde !
PD : Désolé, mon anglais est mauvais !