Skip to navigation

Enhancement Advisory authconfig enhancement

Advisory: RHEA-2005:088-05
Type: Product Enhancement Advisory
Severity: N/A
Issued on: 2005-05-18
Last updated on: 2005-05-18
Affected Products: Red Hat Desktop (v. 3)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux WS (v. 3)

Details

Updated authconfig packages that add the ability to make local
authorization sufficient for local users are now available.

Authconfig is a system configuration tool that allows system administrators
to set authentication and authorization policies of the system.

Policies are set so that users are authenticated and authorized against a
remote service, such as LDAP or a Kerberos server. If the system is
disconnected from the network, or the remote server is unavailable, local
users (even root) could not login to the system.

This update adds '--enablelocauthorize' and '--disablelocauthorize' options
to the authconfig utility which changes this behavior. When the
'--enablelocauthorize' option is used the remote authorization is not
performed, and local users are able to login regardless of the availability
of the remote server.

Also, a minor enhancement to the pam_cracklib module was added so that the
parameters of pam_cracklib are preserved when the authentication
configuration is written.

All users of authconfig should upgrade to these updated packages, which
resolve these issues.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

To update all RPMs for your particular architecture, run:

rpm -Fvh [filenames]

where [filenames] is a list of the RPMs you wish to upgrade. Only those
RPMs which are currently installed will be updated. Those RPMs which are
not installed but included in the list will not be updated. Note that you
can also use wildcards (*.rpm) if your current directory *only* contains the
desired RPMs.

Please note that this update is also available via Red Hat Network. Many
people find this an easier way to apply updates. To use Red Hat Network,
launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

If up2date fails to connect to Red Hat Network due to SSL
Certificate Errors, you need to install a version of the
up2date client with an updated certificate. The latest version of
up2date is available from the Red Hat FTP site and may also be
downloaded directly from the RHN website:

https://rhn.redhat.com/help/latest-up2date.pxt

Updated packages

Red Hat Desktop (v. 3)

SRPMS:
authconfig-4.3.7-3.src.rpm
File outdated by:  RHBA-2006:0226
    MD5: 58b77aea384f57a1ca2fe96d696557c6
 
IA-32:
authconfig-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 623d835f5aaad2f267f7c3fb56072016
authconfig-gtk-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 450840ea6669727ee7a3ba8b591454dd
 
x86_64:
authconfig-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 532d602e824181eab4da6abd308076a1
authconfig-gtk-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 2289c5b72d14a891e2b10719aa1150fc
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
authconfig-4.3.7-3.src.rpm
File outdated by:  RHBA-2006:0226
    MD5: 58b77aea384f57a1ca2fe96d696557c6
 
IA-32:
authconfig-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 623d835f5aaad2f267f7c3fb56072016
authconfig-gtk-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 450840ea6669727ee7a3ba8b591454dd
 
IA-64:
authconfig-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 48794f3fc8009cc3e107ef38ac47929d
authconfig-gtk-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 147657ab46b2e0d7f53288517e45e4b0
 
PPC:
authconfig-4.3.7-3.ppc.rpm
File outdated by:  RHBA-2006:0226
    MD5: 921f455f268b881c3fba40ef1e837958
authconfig-gtk-4.3.7-3.ppc.rpm
File outdated by:  RHBA-2006:0226
    MD5: f1c9b49a4234894bb2a1f1a2546956f7
 
s390:
authconfig-4.3.7-3.s390.rpm
File outdated by:  RHBA-2006:0226
    MD5: 7e97ed22845404208576a0d88de273ab
authconfig-gtk-4.3.7-3.s390.rpm
File outdated by:  RHBA-2006:0226
    MD5: 2da76fe284d199c3b4e30fc04195432e
 
s390x:
authconfig-4.3.7-3.s390x.rpm
File outdated by:  RHBA-2006:0226
    MD5: c79d9eabf9a5fc76ecaca195fe66b1d9
authconfig-gtk-4.3.7-3.s390x.rpm
File outdated by:  RHBA-2006:0226
    MD5: 20b878672e54cb46149e43ddb7c20839
 
x86_64:
authconfig-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 532d602e824181eab4da6abd308076a1
authconfig-gtk-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 2289c5b72d14a891e2b10719aa1150fc
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
authconfig-4.3.7-3.src.rpm
File outdated by:  RHBA-2006:0226
    MD5: 58b77aea384f57a1ca2fe96d696557c6
 
IA-32:
authconfig-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 623d835f5aaad2f267f7c3fb56072016
authconfig-gtk-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 450840ea6669727ee7a3ba8b591454dd
 
IA-64:
authconfig-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 48794f3fc8009cc3e107ef38ac47929d
authconfig-gtk-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 147657ab46b2e0d7f53288517e45e4b0
 
x86_64:
authconfig-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 532d602e824181eab4da6abd308076a1
authconfig-gtk-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 2289c5b72d14a891e2b10719aa1150fc
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
authconfig-4.3.7-3.src.rpm
File outdated by:  RHBA-2006:0226
    MD5: 58b77aea384f57a1ca2fe96d696557c6
 
IA-32:
authconfig-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 623d835f5aaad2f267f7c3fb56072016
authconfig-gtk-4.3.7-3.i386.rpm
File outdated by:  RHBA-2006:0226
    MD5: 450840ea6669727ee7a3ba8b591454dd
 
IA-64:
authconfig-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 48794f3fc8009cc3e107ef38ac47929d
authconfig-gtk-4.3.7-3.ia64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 147657ab46b2e0d7f53288517e45e4b0
 
x86_64:
authconfig-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 532d602e824181eab4da6abd308076a1
authconfig-gtk-4.3.7-3.x86_64.rpm
File outdated by:  RHBA-2006:0226
    MD5: 2289c5b72d14a891e2b10719aa1150fc
 

Bugs fixed (see bugzilla for more information)

109359 - root cannot login if network is down and configured for NIS, LDAP, etc..


Keywords

authconfig, authorization, disconnected, local, network, pam


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/