How to setup account lockout policy using pam_faillock when system is an Active Directory client

Solution Verified - Updated -

Issue

  • How do I setup user locking on invalid password using pam_faillock when system is AD client ?
  • Adding account lockout settings causes SUDO to fail.
  • SUDO doesn't seem to accept user password, but user is able to to log in after setting account lockout policy as per article 62949.
  • Need to set account lockout policy using pam_faillock on Active Directory client.

Environment

  • Red Hat Enterprise Linux 6
  • winbind (pam_winbind)
  • pam_faillock

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.

Current Customers and Partners

Log in for full access

Log In

New to Red Hat?

Learn more about Red Hat subscriptions

Using a Red Hat product through a public cloud?

How to access this content