How does pam_ldap determine the hostname when `pam_check_host_attr` is enabled?
Issue
-
Using
pam_ldapon RHEL 5.8 system that uses Red Hat Directory Services (RHDS) for authentication/authorization,pam_check_host_attris set toyesin/etc/ldap.conf. -
If host attribute for a user in RHDS has a value containing just the short name (not FQDN) users get "Access denied for this host." However if the FQDN is used as a value for the host attribute, the user is granted access.
Environment
- Red Hat Enterprise Linux 5
- nss_ldap
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.