systemd PAM session errors in messages log on Red Hat Linux Enterprise 8

Solution Verified - Updated -

Issue

When trying to log in to a RHEL8 server configured to use an IDM server, the following error appears in the /var/log/messages log.

Oct 15 08:44:03 localdomain systemd[1]: Started Session 16 of user john_doe.
Oct 15 08:44:03 localdomain systemd[550765]: PAM failed: Permission denied
Oct 15 08:44:03 localdomain systemd[550765]: user@125413742.service: Failed to set up PAM session: Operation not permitted
Oct 15 08:44:03 localdomain systemd[550765]: user@125413742.service: Failed at step PAM spawning /usr/lib/systemd/systemd: Operation not permitted
Oct 15 08:44:03 localdomain systemd[1]: user@125413742.service: Failed with result 'protocol'.
Oct 15 08:44:03 localdomain systemd[1]: Failed to start User Manager for UID 125413742.
Oct 15 08:44:03 localdomain systemd[1]: user-runtime-dir@125413742.service: Unit not needed anymore. Stopping.
Oct 15 08:44:03 localdomain systemd[1]: Stopping /run/user/125413742 mount wrapper...
Oct 15 08:44:03 localdomain systemd[1]: Stopped /run/user/125413742 mount wrapper.
(uid=125413742=john_doe@localdomain)

but that doesn't prevent user from log in.

Environment

  • Red Hat Enterprise Linux (RHEL) 8.x
  • Red Hat Identity Management (IDM) on RHEL 7

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content