Trying to configure faillog, and understanding authconfig

Latest response

How do we configure faillog to login on a "stand-alone" workstation, and how to configure that through authconfig?

I have the https://access.redhat.com/solutions/62949 doc; and have setup the pam files as instructed

this resulted in the gdm bug, but i added the line below:
session optional pam-systemd.so (on the web page i found there was a dash, i.e. -session optional pam-systemd.so) but have tried it with or without the dash.

I end up with either a black screen or when i can login, i get bounced out of the login gui (i.e. desktop shows for a second, and them i am out, so it looks like there is a pam module issue, but Im not sure where the error is, and whether there are additional entries needed in the pam files for Maipo, 7.2.

Thanks

Responses

https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Security_Guide/chap-Hardening_Your_System_with_Tools_and_Services.html#sect-Security_Guide-Workstation_Security-Account_Locking

has an updated set of instructions specifically for RHEL 7.x. The pam_systemd.so in the session section is "optional" in PAM terms, but it's very necessary with systemd. Also, order matters.

If your GUI login attempt causes a black screen or an immediate logout, you should login in character mode and view the .xsession-errors file in your home directory. Also, verify that there is some free space on the filesystem containing your home directory and you're not out of disk quota (if applicable): a GUI login session requires writing a small file or two into your home directory, and an immediate logout is exactly what happens those can't be written for whatever reason.

Thanks Matti, The issue is that on reboot, and using the exact syntax in that Doc, bringing the GDM up results in a Black screen. I can revert back and get in; however; when I put the faillock entries in, I consistently get back to the black screen. I noticed that there is a pam module patch of 7 (I am on 7.2), and am investigating whether that will resolve my issue. I am also going over the link you posted and will respond back later as to whether that resolves the issue.

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.