Triment / blog

0 stars 0 forks source link

fedora 即使密码正确web登录提示密码错误 #95

Open Triment opened 6 months ago

Triment commented 6 months ago

fedora有一个不允许用户的列表 在

/etc/pam.d/cockpit
``` 中有
```vim
#%PAM-1.0
auth       required     pam_sepermit.so
auth       substack     password-auth
auth       include      postlogin
auth       optional     pam_ssh_add.so
# List of users to deny access to Cockpit, by default root is included.
auth       required     pam_listfile.so item=user sense=deny file=/etc/cockpit/disallowed-users onerr=succeed#这里表示拒绝用户的列表
account    required     pam_nologin.so
account    include      password-auth
password   include      password-auth
# pam_selinux.so close should be the first session rule
session    required     pam_selinux.so close
session    required     pam_loginuid.so
# pam_selinux.so open should only be followed by sessions to be executed in the user context
session    required     pam_selinux.so open env_params
session    optional     pam_keyinit.so force revoke
session    optional     pam_ssh_add.so
session    include      password-auth
session    include      postlogin

我们找到拒绝用户文件/etc/cockpit/disallowed-users 把用户注释掉就可以